[nginx] Fixed chunk size parsing.
Maxim Dounin
mdounin at mdounin.ru
Mon May 13 11:29:06 UTC 2013
details: http://hg.nginx.com/nginx/rev/abfe9e6e72cb
branches: stable-1.2
changeset: 5206:abfe9e6e72cb
user: Maxim Dounin <mdounin at mdounin.ru>
date: Mon May 13 13:19:28 2013 +0400
description:
Fixed chunk size parsing.
diffstat:
src/http/modules/ngx_http_proxy_module.c | 4 ++++
1 files changed, 4 insertions(+), 0 deletions(-)
diffs (14 lines):
diff --git a/src/http/modules/ngx_http_proxy_module.c b/src/http/modules/ngx_http_proxy_module.c
--- a/src/http/modules/ngx_http_proxy_module.c
+++ b/src/http/modules/ngx_http_proxy_module.c
@@ -1865,6 +1865,10 @@ data:
}
+ if (ctx->size < 0 || ctx->length < 0) {
+ goto invalid;
+ }
+
return rc;
done:
More information about the nginx-devel
mailing list