]> granicus.if.org Git - apache/commit
Add alternative fixes for CVE-2007-3304:
authorJoe Orton <jorton@apache.org>
Fri, 29 Jun 2007 10:33:14 +0000 (10:33 +0000)
committerJoe Orton <jorton@apache.org>
Fri, 29 Jun 2007 10:33:14 +0000 (10:33 +0000)
commit0a0d324e07439178928268989607d3219f7e8b34
treeede12ebc2873490c3c3234e07f8ab2e01fa7b00b
parentada9c28dcf715bd6f61c1f2761a0a04f68f2a019
Add alternative fixes for CVE-2007-3304:

* configure.in: Check for getpgid.

* include/mpm_common.h (ap_mpm_safe_kill): New prototype.

* server/mpm_common.c (reclaim_one_pid): Ensure pid validity before
calling apr_proc_wait().
(ap_mpm_safe_kill): New function.

* server/mpm/prefork/prefork.c, server/mpm/worker/worker.c,
server/mpm/experimental/event/event.c: Use ap_mpm_safe_kill() on pids
from the scoreboard, throughout.

* include/ap_mmn.h: Minor bump.

git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/trunk@551843 13f79535-47bb-0310-9956-ffa450edef68
CHANGES
configure.in
include/ap_mmn.h
include/mpm_common.h
server/mpm/experimental/event/event.c
server/mpm/prefork/prefork.c
server/mpm/worker/worker.c
server/mpm_common.c