From 5226f7c50ec6ef6a2da9ca8e04d1afca2725e259 Mon Sep 17 00:00:00 2001 From: Fredrik Tolf Date: Tue, 5 Oct 2010 00:44:01 +0200 Subject: [PATCH] htparser: Enforce no more than Content-Length bytes are passed to the client. --- src/htparser.c | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/src/htparser.c b/src/htparser.c index 33ceb49..d1b0a1c 100644 --- a/src/htparser.c +++ b/src/htparser.c @@ -283,8 +283,8 @@ void serve(FILE *in, struct conn *conn) if(!hasheader(req, "connection", "keep-alive")) break; } else if((hd = getheader(resp, "content-length")) != NULL) { - dlen = passdata(out, in, -1); - if(dlen != atoo(hd)) + dlen = atoo(hd); + if(passdata(out, in, dlen) != dlen) break; if(!hasheader(req, "connection", "keep-alive")) break; @@ -301,8 +301,8 @@ void serve(FILE *in, struct conn *conn) } else if((hd = getheader(resp, "content-length")) != NULL) { writeresp(in, resp); fprintf(in, "\r\n"); - dlen = passdata(out, in, -1); - if(dlen != atoo(hd)) + dlen = atoo(hd); + if(passdata(out, in, dlen) != dlen) break; } else if(!getheader(resp, "transfer-encoding")) { headappheader(resp, "Transfer-Encoding", "chunked"); -- 2.11.0