httpd-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Jim Jagielski <...@apache.org>
Subject Re: svn commit: r1161661 - /httpd/httpd/trunk/modules/http/byterange_filter.c
Date Fri, 26 Aug 2011 14:27:08 GMT
> 
> I guess we can do both: Count the ',' and give the number to apr_array_make
> 

Doesn't that mean that someone can craft a nasty Range (e.g: 0-0,1-1,2-2,
3-3,….99999999-99999999 and cause us to preallocate a bunch
of memory when at the end we'll get 0-99999999 ???



Mime
View raw message