details: http://hg.nginx.com/nginx/rev/abfe9e6e72cb
branches: stable-1.2
changeset: 5206:abfe9e6e72cb
user: Maxim Dounin <mdounin@mdounin.ru>
date: Mon May 13 13:19:28 2013 +0400
description:
Fixed chunk size parsing.
diffstat:
src/http/modules/ngx_http_proxy_module.c | 4 ++++
1 files changed, 4 insertions(+), 0 deletions(-)
diffs (14 lines):
diff --git a/src/http/modules/ngx_http_proxy_module.c b/src/http/modules/ngx_http_proxy_module.c
--- a/src/http/modules/ngx_http_proxy_module.c
+++ b/src/http/modules/ngx_http_proxy_module.c
@@ -1865,6 +1865,10 @@ data:
}
+ if (ctx->size < 0 || ctx->length < 0) {
+ goto invalid;
+ }
+
return rc;
done:
_______________________________________________
nginx-devel mailing list
nginx-devel@nginx.org
http://mailman.nginx.org/mailman/listinfo/nginx-devel