sesser Mon Feb 28 11:22:39 2005 EDT Modified files: /php-src/ext/standard var_unserializer.re Log: Drop invalid arrays http://cvs.php.net/diff.php/php-src/ext/standard/var_unserializer.re?r1=1.45&r2=1.46&ty=u Index: php-src/ext/standard/var_unserializer.re diff -u php-src/ext/standard/var_unserializer.re:1.45 php-src/ext/standard/var_unserializer.re:1.46 --- php-src/ext/standard/var_unserializer.re:1.45 Sun Feb 27 06:30:41 2005 +++ php-src/ext/standard/var_unserializer.re Mon Feb 28 11:22:39 2005 @@ -16,7 +16,7 @@ +----------------------------------------------------------------------+ */ -/* $Id: var_unserializer.re,v 1.45 2005/02/27 11:30:41 stas Exp $ */ +/* $Id: var_unserializer.re,v 1.46 2005/02/28 16:22:39 sesser Exp $ */ #include "php.h" #include "ext/standard/php_var.h" @@ -477,6 +477,10 @@ "a:" uiv ":" "{" { int elements = parse_iv(start + 2); + if (elements < 0) { + return 0; + } + *p = YYCURSOR; INIT_PZVAL(*rval);
-- PHP CVS Mailing List (http://www.php.net/) To unsubscribe, visit: http://www.php.net/unsub.php