summaryrefslogtreecommitdiff
path: root/html.c
diff options
context:
space:
mode:
authorEric Wong <normalperson@yhbt.net>2011-07-21 03:24:54 +0000
committerLars Hjemli <hjemli@gmail.com>2011-07-21 14:21:52 +0000
commit9cae75d040d9102d4b628ba3c828d95d0251f5c0 (patch)
tree90dd85a1ebcb0c8731bb02823b9d3707e873945d /html.c
parent877ff681007f31c69777e9569c4de819d4af19c9 (diff)
downloadcgit-9cae75d040d9102d4b628ba3c828d95d0251f5c0.tar.gz
cgit-9cae75d040d9102d4b628ba3c828d95d0251f5c0.tar.bz2
cgit-9cae75d040d9102d4b628ba3c828d95d0251f5c0.zip
html.c: avoid out-of-bounds access for url_escape_table
This fixes a segfault for me with with -O2 optimization on x86 with gcc (Debian 4.4.5-8) 4.4.5 I can reliably reproduce it with the following parameters when pointed to the git.git repository: PATH_INFO='/git-core.git/diff/' QUERY_STRING='id=2b93bfac0f5bcabbf60f174f4e7bfa9e318e64d5&id2=d6da71a9d16b8cf27f9d8f90692d3625c849cbc8' Signed-off-by: Eric Wong <normalperson@yhbt.net> Signed-off-by: Lars Hjemli <hjemli@gmail.com>
Diffstat (limited to 'html.c')
-rw-r--r--html.c4
1 files changed, 2 insertions, 2 deletions
diff --git a/html.c b/html.c
index 24a03a5..5b07aa0 100644
--- a/html.c
+++ b/html.c
@@ -162,7 +162,7 @@ void html_url_path(const char *txt)
{
const char *t = txt;
while(t && *t){
- int c = *t;
+ unsigned char c = *t;
const char *e = url_escape_table[c];
if (e && c!='+' && c!='&') {
html_raw(txt, t - txt);
@@ -179,7 +179,7 @@ void html_url_arg(const char *txt)
{
const char *t = txt;
while(t && *t){
- int c = *t;
+ unsigned char c = *t;
const char *e = url_escape_table[c];
if (c == ' ')
e = "+";
&follow=1'>Do not unnecessarily strdup() environment variablesLukas Fleischer1-15/+10 2013-04-08Maŕk cgit_environment members constLukas Fleischer2-12/+12 2013-04-08Return const char * in cgit_{httpscheme, hosturl, rooturl}()Lukas Fleischer3-9/+9 2013-04-08Update git to v1.8.2.1John Keeping4-5/+6 2013-04-07ui-blob: don't segfault when no path is givenJohn Keeping1-1/+1 2013-03-20Convert pager navigation into a unordered listLukas Fleischer3-9/+20 2013-03-20Makefile: remove CGIT-CFLAGS files in clean stageJason A. Donenfeld1-1/+1 2013-03-20ui-summary.c: Move urls variable into print_urls()Lukas Fleischer1-6/+14 2013-03-20Fix colspan valuesLukas Fleischer3-14/+28 2013-03-20html: check return value of writeJason A. Donenfeld1-2/+3 2013-03-20ui-shared: squelch compiler warning.Jason A. Donenfeld1-0/+1 2013-03-20cgit.mk: Use SHELL_PATH_SQ to run gen-version.shJohn Keeping1-1/+1 2013-03-20cgit.mk: don't rebuild everything if CGIT_VERSION changesJohn Keeping1-1/+8 2013-03-20ui-patch: use cgit_version not CGIT_VERSIONJohn Keeping1-1/+1 2013-03-20Makefile: re-use Git's Makefile where possibleJohn Keeping3-119/+80