diff options
author | Stanislav Malyshev <stas@php.net> | 2012-05-29 23:14:09 -0700 |
---|---|---|
committer | Stanislav Malyshev <stas@php.net> | 2012-05-29 23:14:09 -0700 |
commit | f4285781382606f17c357506c11f47ce9ca7b3cc (patch) | |
tree | 53c9f2ea50dfbbddc4c4203b1a76005f1ca647a8 | |
parent | 9a9362cb0922005a5fb79b4de05d0dfa6e90ac71 (diff) | |
parent | 692b3bcd88ece3eefbc5131ecdf971ff18f191cf (diff) | |
download | php-git-f4285781382606f17c357506c11f47ce9ca7b3cc.tar.gz |
Merge branch 'PHP-5.4'
* PHP-5.4:
fix CVE-2012-2143
-rw-r--r-- | ext/standard/crypt_freesec.c | 3 | ||||
-rw-r--r-- | ext/standard/tests/strings/crypt_chars.phpt | 19 |
2 files changed, 21 insertions, 1 deletions
diff --git a/ext/standard/crypt_freesec.c b/ext/standard/crypt_freesec.c index 49c397cca1..0a5c3ba5fa 100644 --- a/ext/standard/crypt_freesec.c +++ b/ext/standard/crypt_freesec.c @@ -629,7 +629,8 @@ _crypt_extended_r(const char *key, const char *setting, */ q = (u_char *) keybuf; while (q - (u_char *) keybuf < sizeof(keybuf)) { - if ((*q++ = *key << 1)) + *q++ = *key << 1; + if (*key) key++; } if (des_setkey((u_char *) keybuf, data)) diff --git a/ext/standard/tests/strings/crypt_chars.phpt b/ext/standard/tests/strings/crypt_chars.phpt new file mode 100644 index 0000000000..09cd868216 --- /dev/null +++ b/ext/standard/tests/strings/crypt_chars.phpt @@ -0,0 +1,19 @@ +--TEST-- +crypt() function - characters > 0x80 +--SKIPIF-- +<?php +if (!function_exists('crypt')) { + die("SKIP crypt() is not available"); +} +?> +--FILE-- +<?php +var_dump(crypt("À1234abcd", "99")); +var_dump(crypt("À9234abcd", "99")); +var_dump(crypt("À1234abcd", "_01234567")); +var_dump(crypt("À9234abcd", "_01234567")); +--EXPECT-- +string(13) "99PxawtsTfX56" +string(13) "99jcVcGxUZOWk" +string(20) "_01234567IBjxKliXXRQ" +string(20) "_012345678OSGpGQRVHA" |