/[Apache-SVN]
ViewVC logotype

Revision 1576716


Jump to revision: Previous Next
Author: rpluem
Date: Wed Mar 12 12:41:07 2014 UTC (9 years, 3 months ago)
Changed paths: 4
Log Message:
Merge r1575400 from trunk:

CVE-2014-0098 (reported by Rainer Canavan <rainer-apache 7val com>)
Segfaults w/ truncated cookie logging.

Clean up the cookie logging parser to recognize only the cookie=value pairs,
not valueless cookies.  This refactors multiple passes over the same string
buffer into a single pass parser.

Submitted by: wrowe
Reviewed by: rpluem, jim 

Reviewed by: wrowe, ylavic, jim


Changed paths

Path Details
Directoryhttpd/httpd/branches/2.2.x/ modified , props changed
Directoryhttpd/httpd/branches/2.2.x/CHANGES modified , text changed
Directoryhttpd/httpd/branches/2.2.x/STATUS modified , text changed
Directoryhttpd/httpd/branches/2.2.x/modules/loggers/mod_log_config.c modified , text changed

infrastructure at apache.org
ViewVC Help
Powered by ViewVC 1.1.26