httpd-cvs mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From traw...@apache.org
Subject svn commit: r201455 - in /httpd/httpd/trunk: CHANGES support/htdbm.c
Date Thu, 23 Jun 2005 20:45:18 GMT
Author: trawick
Date: Thu Jun 23 13:45:17 2005
New Revision: 201455

URL: http://svn.apache.org/viewcvs?rev=201455&view=rev
Log:
Fix htdbm password validation for records which included comments.

Submitted by: Eric Covener <covener gmail.com>
Reviewed by:  trawick


Modified:
    httpd/httpd/trunk/CHANGES
    httpd/httpd/trunk/support/htdbm.c

Modified: httpd/httpd/trunk/CHANGES
URL: http://svn.apache.org/viewcvs/httpd/httpd/trunk/CHANGES?rev=201455&r1=201454&r2=201455&view=diff
==============================================================================
--- httpd/httpd/trunk/CHANGES (original)
+++ httpd/httpd/trunk/CHANGES Thu Jun 23 13:45:17 2005
@@ -1,6 +1,9 @@
 Changes with Apache 2.1.6
   [Remove entries to the current 2.0 section below, when backported]
 
+  *) Fix htdbm password validation for records which included comments.
+     [Eric Covener <covener gmail.com>]
+
   *) SECURITY: 
      proxy HTTP: If a response contains both Transfer-Encoding and a 
      Content-Length, remove the Content-Length and don't reuse the

Modified: httpd/httpd/trunk/support/htdbm.c
URL: http://svn.apache.org/viewcvs/httpd/httpd/trunk/support/htdbm.c?rev=201455&r1=201454&r2=201455&view=diff
==============================================================================
--- httpd/httpd/trunk/support/htdbm.c (original)
+++ httpd/httpd/trunk/support/htdbm.c Thu Jun 23 13:45:17 2005
@@ -226,7 +226,7 @@
     if (apr_dbm_fetch(htdbm->dbm, key, &val) != APR_SUCCESS)
         return APR_ENOENT;
     rec = apr_pstrndup(htdbm->pool, val.dptr, val.dsize);
-    cmnt = strchr(rec, ';');
+    cmnt = strchr(rec, ':');
     if (cmnt)
         strncpy(pwd, rec, cmnt - rec);
     else



Mime
View raw message