Ticket #836 (closed Bug report: fixed)
[PATCH] buffer overflow on too long url
|Reported by:||etienne.champetier@…||Owned by:||JV|
The first patch prevent buffer overflow on "r->response.headers".
The second patch put the url at the end and not the mac, as urlfragment may end up mangled (i think it's best to have half the url than half the mac)
In every case, i'm not sure of the "safe_asprintf(&urlFragment, "%s&mac=%s", urlFragment, mac)" because urlFragment is in and out (see notes in http://manpages.ubuntu.com/manpages/precise/man3/printf.3.html), we should at least use a tempUrlFragment.