From b7476a5bd6f7032a1333ef1a56a2e945c64adab5 Mon Sep 17 00:00:00 2001 From: Stefan Esser Date: Mon, 28 Feb 2005 16:22:39 +0000 Subject: [PATCH] Drop invalid arrays --- ext/standard/var_unserializer.re | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/ext/standard/var_unserializer.re b/ext/standard/var_unserializer.re index 613dd32c6f..a774946d91 100644 --- a/ext/standard/var_unserializer.re +++ b/ext/standard/var_unserializer.re @@ -477,6 +477,10 @@ PHPAPI int php_var_unserialize(UNSERIALIZE_PARAMETER) "a:" uiv ":" "{" { int elements = parse_iv(start + 2); + if (elements < 0) { + return 0; + } + *p = YYCURSOR; INIT_PZVAL(*rval); -- 2.50.1