From: Dmitry Stogov Date: Fri, 7 Sep 2007 08:42:33 +0000 (+0000) Subject: forgotten part X-Git-Tag: RELEASE_2_0_0a1~1866 X-Git-Url: https://granicus.if.org/sourcecode?a=commitdiff_plain;h=1123fc81505166510edbde186536a5671535d8a2;p=php forgotten part --- diff --git a/sapi/cgi/fastcgi.c b/sapi/cgi/fastcgi.c index 85855036d3..d070062351 100644 --- a/sapi/cgi/fastcgi.c +++ b/sapi/cgi/fastcgi.c @@ -717,6 +717,10 @@ static int fcgi_read_request(fcgi_request *req) padding = hdr.paddingLength; while (hdr.type == FCGI_PARAMS && len > 0) { + if (len + padding > FCGI_MAX_LENGTH) { + return 0; + } + if (safe_read(req, buf, len+padding) != len+padding) { req->keep = 0; return 0;