Welcome! Log In Create A New Profile

Advanced

[PATCH 30 of 31] Autoindex: escape html in file names

Maxim Dounin
February 15, 2011 08:48AM
# HG changeset patch
# User Maxim Dounin <mdounin@mdounin.ru>
# Date 1297776703 -10800
# Node ID 78948f1f285d8dc4b5a5926d92eaf0b8f2a08e2f
# Parent e6bfb619ca6875f2657c84eea714943217d397e6
Autoindex: escape html in file names.

diff --git a/src/http/modules/ngx_http_autoindex_module.c b/src/http/modules/ngx_http_autoindex_module.c
--- a/src/http/modules/ngx_http_autoindex_module.c
+++ b/src/http/modules/ngx_http_autoindex_module.c
@@ -26,6 +26,7 @@ typedef struct {
ngx_str_t name;
size_t utf_len;
size_t escape;
+ size_t escape_html;

unsigned dir:1;

@@ -137,7 +138,7 @@ ngx_http_autoindex_handler(ngx_http_requ
{
u_char *last, *filename, scale;
off_t length;
- size_t len, utf_len, allocated, root;
+ size_t len, char_len, escape_html, allocated, root;
ngx_tm_t tm;
ngx_err_t err;
ngx_buf_t *b;
@@ -339,6 +340,9 @@ ngx_http_autoindex_handler(ngx_http_requ
entry->escape = 2 * ngx_escape_uri(NULL, ngx_de_name(&dir), len,
NGX_ESCAPE_URI_COMPONENT);

+ entry->escape_html = ngx_escape_html(NULL, entry->name.data,
+ entry->name.len);
+
if (utf8) {
entry->utf_len = ngx_utf8_length(entry->name.data, entry->name.len);
} else {
@@ -355,10 +359,12 @@ ngx_http_autoindex_handler(ngx_http_requ
ngx_close_dir_n " \"%s\" failed", &path);
}

+ escape_html = ngx_escape_html(NULL, r->uri.data, r->uri.len);
+
len = sizeof(title) - 1
- + r->uri.len
+ + r->uri.len + escape_html
+ sizeof(header) - 1
- + r->uri.len
+ + r->uri.len + escape_html
+ sizeof("</h1>") - 1
+ sizeof("<hr><pre><a href=\"../\">../</a>" CRLF) - 1
+ sizeof("</pre><hr>") - 1
@@ -371,6 +377,7 @@ ngx_http_autoindex_handler(ngx_http_requ
+ 1 /* 1 is for "/" */
+ sizeof("\">") - 1
+ entry[i].name.len - entry[i].utf_len
+ + entry[i].escape_html
+ NGX_HTTP_AUTOINDEX_NAME_LEN + sizeof("&gt;") - 2
+ sizeof("</a>") - 1
+ sizeof(" 28-Sep-1970 12:00 ") - 1
@@ -390,9 +397,18 @@ ngx_http_autoindex_handler(ngx_http_requ
}

b->last = ngx_cpymem(b->last, title, sizeof(title) - 1);
- b->last = ngx_cpymem(b->last, r->uri.data, r->uri.len);
- b->last = ngx_cpymem(b->last, header, sizeof(header) - 1);
- b->last = ngx_cpymem(b->last, r->uri.data, r->uri.len);
+
+ if (escape_html) {
+ b->last = (u_char *) ngx_escape_html(b->last, r->uri.data, r->uri.len);
+ b->last = ngx_cpymem(b->last, header, sizeof(header) - 1);
+ b->last = (u_char *) ngx_escape_html(b->last, r->uri.data, r->uri.len);
+
+ } else {
+ b->last = ngx_cpymem(b->last, r->uri.data, r->uri.len);
+ b->last = ngx_cpymem(b->last, header, sizeof(header) - 1);
+ b->last = ngx_cpymem(b->last, r->uri.data, r->uri.len);
+ }
+
b->last = ngx_cpymem(b->last, "</h1>", sizeof("</h1>") - 1);

b->last = ngx_cpymem(b->last, "<hr><pre><a href=\"../\">../</a>" CRLF,
@@ -425,20 +441,41 @@ ngx_http_autoindex_handler(ngx_http_requ

if (entry[i].name.len != len) {
if (len > NGX_HTTP_AUTOINDEX_NAME_LEN) {
- utf_len = NGX_HTTP_AUTOINDEX_NAME_LEN - 3 + 1;
+ char_len = NGX_HTTP_AUTOINDEX_NAME_LEN - 3 + 1;

} else {
- utf_len = NGX_HTTP_AUTOINDEX_NAME_LEN + 1;
+ char_len = NGX_HTTP_AUTOINDEX_NAME_LEN + 1;
}

+ last = b->last;
b->last = ngx_utf8_cpystrn(b->last, entry[i].name.data,
- utf_len, entry[i].name.len + 1);
+ char_len, entry[i].name.len + 1);
+
+ if (entry[i].escape_html) {
+ b->last = (u_char *) ngx_escape_html(last, entry[i].name.data,
+ b->last - last);
+ }
+
last = b->last;

} else {
- b->last = ngx_cpystrn(b->last, entry[i].name.data,
- NGX_HTTP_AUTOINDEX_NAME_LEN + 1);
- last = b->last - 3;
+ if (entry[i].escape_html) {
+ if (len > NGX_HTTP_AUTOINDEX_NAME_LEN) {
+ char_len = NGX_HTTP_AUTOINDEX_NAME_LEN - 3;
+
+ } else {
+ char_len = len;
+ }
+
+ b->last = (u_char *) ngx_escape_html(b->last,
+ entry[i].name.data, char_len);
+ last = b->last;
+
+ } else {
+ b->last = ngx_cpystrn(b->last, entry[i].name.data,
+ NGX_HTTP_AUTOINDEX_NAME_LEN + 1);
+ last = b->last - 3;
+ }
}

if (len > NGX_HTTP_AUTOINDEX_NAME_LEN) {

_______________________________________________
nginx-devel mailing list
nginx-devel@nginx.org
http://nginx.org/mailman/listinfo/nginx-devel
Subject Author Views Posted

[PATCH 00 of 31] generic patch queue for 0.9.4

Maxim Dounin 2948 February 15, 2011 08:38AM

[PATCH 01 of 31] Reuse keepalive connections if worker connections aren't enough

Maxim Dounin 894 February 15, 2011 08:38AM

[PATCH 02 of 31] Complain on invalid log levels

Maxim Dounin 987 February 15, 2011 08:38AM

[PATCH 03 of 31] Fix u->one_addr handling in ngx_inet_resolve_host()

Maxim Dounin 737 February 15, 2011 08:38AM

[PATCH 04 of 31] Fix incorrect 201 replies from dav module

Maxim Dounin 774 February 15, 2011 08:38AM

[PATCH 05 of 31] Fix error_page status code change in redirect

Maxim Dounin 765 February 15, 2011 08:38AM

[PATCH 06 of 31] Fix double content when return is used in error_page redirection

Maxim Dounin 743 February 15, 2011 08:40AM

[PATCH 07 of 31] Drop incorrect special case for return 204

Maxim Dounin 782 February 15, 2011 08:40AM

[PATCH 08 of 31] Clear old Location header (if any) while adding new one

Maxim Dounin 821 February 15, 2011 08:40AM

[PATCH 09 of 31] Better handle various per-server ssl options with SNI

Maxim Dounin 847 February 15, 2011 08:40AM

[PATCH 10 of 31] Better handle late upstream creation

Maxim Dounin 838 February 15, 2011 08:40AM

[PATCH 12 of 31] Fix predicate testing (*_cache_bypass, *_no_cache)

Maxim Dounin 838 February 15, 2011 08:42AM

[PATCH 11 of 31] Gzip filter: handle empty flush buffers

Maxim Dounin 823 February 15, 2011 08:42AM

[PATCH 13 of 31] Fix connection drops with AIO

Maxim Dounin 893 February 15, 2011 08:42AM

[PATCH 14 of 31] Fix socket leak with "aio sendfile" and "limit_rate" directives

Maxim Dounin 942 February 15, 2011 08:42AM

[PATCH 15 of 31] Correctly handle Content-Encoding set from perl

Maxim Dounin 809 February 15, 2011 08:42AM

[PATCH 16 of 31] Gzip static: "always" parameter in "gzip_static" directive

Maxim Dounin 922 February 15, 2011 08:42AM

[PATCH 17 of 31] Memcached: memcached_gzip_flag directive

Maxim Dounin 920 February 15, 2011 08:42AM

[PATCH 18 of 31] Mail: handle smtp multiline replies

Maxim Dounin 859 February 15, 2011 08:44AM

[PATCH 19 of 31] Additional headers for proxy_ignore_headers/fastcgi_ignore_headers

Maxim Dounin 893 February 15, 2011 08:44AM

[PATCH 20 of 31] Fix cpu hog with all upstream servers marked "down"

Maxim Dounin 859 February 15, 2011 08:44AM

[PATCH 21 of 31] Cache: correctly set conf_file while adding paths

Maxim Dounin 811 February 15, 2011 08:44AM

[PATCH 22 of 31] Fastcgi: fix large stderr handling without cache

Maxim Dounin 830 February 15, 2011 08:44AM

[PATCH 23 of 31] Upstream: fix proxy_store leaving temporary files for subrequests

Maxim Dounin 972 February 15, 2011 08:44AM

[PATCH 24 of 31] Cache: fix sending of empty responses

Maxim Dounin 857 February 15, 2011 08:46AM

[PATCH 25 of 31] Cache: fix sending of stale responses

Maxim Dounin 838 February 15, 2011 08:46AM

[PATCH 26 of 31] Variables: honor no_cacheable for not_found variables

Maxim Dounin 845 February 15, 2011 08:46AM

[PATCH 27 of 31] Core: protect from subrequest loops

Maxim Dounin 883 February 15, 2011 08:46AM

[PATCH 29 of 31] Autoindex: escape '?' in file names

Maxim Dounin 874 February 15, 2011 08:46AM

[PATCH 28 of 31] Core: resolve various cycles with named locations and post_action

Maxim Dounin 841 February 15, 2011 08:46AM

[PATCH 30 of 31] Autoindex: escape html in file names

Maxim Dounin 931 February 15, 2011 08:48AM

[PATCH 31 of 31] Unbreak build with embedded perl and --with-openssl

Maxim Dounin 793 February 15, 2011 08:48AM

Re: [PATCH 00 of 31] generic patch queue for 0.9.4

Kirill A. Korinskiy 795 February 15, 2011 09:04AM

Re: [PATCH 00 of 31] generic patch queue for 0.9.4

Piotr Sikora 795 February 15, 2011 09:22AM

Re: [PATCH 00 of 31] generic patch queue for 0.9.4

Maxim Dounin 774 February 15, 2011 11:24AM

Re: [PATCH 00 of 31] generic patch queue for 0.9.4

deltay 931 February 15, 2011 08:40PM

Re: [PATCH 00 of 31] generic patch queue for 0.9.4

António P. P. Almeida 832 February 21, 2011 10:08AM

Re: [PATCH 00 of 31] generic patch queue for 0.9.4

Maxim Dounin 1158 February 21, 2011 11:24AM



Sorry, you do not have permission to post/reply in this forum.

Online Users

Guests: 147
Record Number of Users: 8 on April 13, 2023
Record Number of Guests: 421 on December 02, 2018
Powered by nginx      Powered by FreeBSD      PHP Powered      Powered by MariaDB      ipv6 ready