fmk             Fri Nov 18 15:40:53 2005 EDT

  Modified files:              (Branch: PHP_5_1)
    /php-src    NEWS 
    /php-src/ext/mssql  php_mssql.c 
  Log:
  MFH: Fix #32009 crash when mssql_bind() is called more than once
  
http://cvs.php.net/diff.php/php-src/NEWS?r1=1.2027.2.204&r2=1.2027.2.205&ty=u
Index: php-src/NEWS
diff -u php-src/NEWS:1.2027.2.204 php-src/NEWS:1.2027.2.205
--- php-src/NEWS:1.2027.2.204   Fri Nov 18 14:14:31 2005
+++ php-src/NEWS        Fri Nov 18 15:40:51 2005
@@ -4,6 +4,7 @@
 - Fixed bug #35278 (Multiple virtual() calls crash Apache 2 php module). (Ilia)
 - Fixed bug #35273 (Error in mapping soap - java types). (Dmitry)
 - Fixed bug #33153 (crash in mssql_next result). (Frank)
+- Fixed bug #32009 (crash when mssql_bind() is called more than once). (Frank)
 
 17 Nov 2005, PHP 5.1 Release Candidate 6
 - Changed function parameter parsing to handle integers in a non-strict fashion
http://cvs.php.net/diff.php/php-src/ext/mssql/php_mssql.c?r1=1.152.2.5&r2=1.152.2.6&ty=u
Index: php-src/ext/mssql/php_mssql.c
diff -u php-src/ext/mssql/php_mssql.c:1.152.2.5 
php-src/ext/mssql/php_mssql.c:1.152.2.6
--- php-src/ext/mssql/php_mssql.c:1.152.2.5     Fri Nov 18 14:14:32 2005
+++ php-src/ext/mssql/php_mssql.c       Fri Nov 18 15:40:52 2005
@@ -16,7 +16,7 @@
    +----------------------------------------------------------------------+
  */
 
-/* $Id: php_mssql.c,v 1.152.2.5 2005/11/18 19:14:32 fmk Exp $ */
+/* $Id: php_mssql.c,v 1.152.2.6 2005/11/18 20:40:52 fmk Exp $ */
 
 #ifdef COMPILE_DL_MSSQL
 #define HAVE_MSSQL 1
@@ -2116,17 +2116,22 @@
                zend_hash_init(statement->binds, 13, NULL, 
_mssql_bind_hash_dtor, 0);
        }
 
-       memset((void*)&bind,0,sizeof(mssql_bind));
-       
zend_hash_add(statement->binds,Z_STRVAL_PP(param_name),Z_STRLEN_PP(param_name),&bind,sizeof(mssql_bind),(void
 **)&bindp);
-       if( NULL == bindp ) RETURN_FALSE;
-       bindp->zval=*var;
-       zval_add_ref(var);
-
-       /* no call to dbrpcparam if RETVAL */
-       if ( strcmp("RETVAL",Z_STRVAL_PP(param_name))!=0 ) {                    
                        
-               if (dbrpcparam(mssql_ptr->link, Z_STRVAL_PP(param_name), 
(BYTE)status, type, maxlen, datalen, (LPBYTE)value)==FAIL) {
-                       php_error_docref(NULL TSRMLS_CC, E_WARNING, "Unable to 
set parameter");
-                       RETURN_FALSE;
+       if (zend_hash_exists(statement->binds, Z_STRVAL_PP(param_name), 
Z_STRLEN_PP(param_name))) {
+               RETURN_FALSE;
+       }
+       else {
+               memset((void*)&bind,0,sizeof(mssql_bind));
+               zend_hash_add(statement->binds, Z_STRVAL_PP(param_name), 
Z_STRLEN_PP(param_name), &bind, sizeof(mssql_bind), (void **)&bindp);
+               if( NULL == bindp ) RETURN_FALSE;
+               bindp->zval=*var;
+               zval_add_ref(var);
+       
+               /* no call to dbrpcparam if RETVAL */
+               if ( strcmp("RETVAL",Z_STRVAL_PP(param_name))!=0 ) {            
                                
+                       if (dbrpcparam(mssql_ptr->link, 
Z_STRVAL_PP(param_name), (BYTE)status, type, maxlen, datalen, 
(LPBYTE)value)==FAIL) {
+                               php_error_docref(NULL TSRMLS_CC, E_WARNING, 
"Unable to set parameter");
+                               RETURN_FALSE;
+                       }
                }
        }
 

-- 
PHP CVS Mailing List (http://www.php.net/)
To unsubscribe, visit: http://www.php.net/unsub.php

Reply via email to