mirror of
https://github.com/ninenines/cowboy.git
synced 2025-07-14 20:30:23 +00:00
Fix two edge cases when the request-line provided is invalid
This commit is contained in:
parent
18f50b8697
commit
403895a641
2 changed files with 6 additions and 0 deletions
|
@ -136,6 +136,8 @@ wait_request(Buffer, State=#state{socket=Socket, transport=Transport,
|
|||
%% Empty lines must be using \r\n.
|
||||
parse_request(<< $\n, _/binary >>, State, _) ->
|
||||
error_terminate(400, State);
|
||||
parse_request(<< $\s, _/bits >>, State, _) ->
|
||||
error_terminate(400, State);
|
||||
%% We limit the length of the Request-line to MaxLength to avoid endlessly
|
||||
%% reading from the socket and eventually crashing.
|
||||
parse_request(Buffer, State=#state{max_request_line_length=MaxLength,
|
||||
|
@ -170,6 +172,8 @@ parse_method(<< C, Rest/bits >>, State, SoFar) ->
|
|||
|
||||
parse_uri(<< $\r, _/bits >>, State, _) ->
|
||||
error_terminate(400, State);
|
||||
parse_uri(<< $\s, _/bits >>, State, Method) ->
|
||||
error_terminate(400, State);
|
||||
parse_uri(<< "* ", Rest/bits >>, State, Method) ->
|
||||
parse_version(Rest, State, Method, <<"*">>, <<>>);
|
||||
parse_uri(<< "http://", Rest/bits >>, State, Method) ->
|
||||
|
|
|
@ -256,6 +256,8 @@ The document has moved
|
|||
{400, "\n"},
|
||||
{400, "Garbage\r\n\r\n"},
|
||||
{400, "\r\n\r\n\r\n\r\n\r\n\r\n"},
|
||||
{400, " / HTTP/1.1\r\nHost: localhost\r\n\r\n"},
|
||||
{400, "GET HTTP/1.1\r\nHost: localhost\r\n\r\n"},
|
||||
{400, "GET / HTTP/1.1\r\nHost: ninenines.eu\r\n\r\n"},
|
||||
{400, "GET http://proxy/ HTTP/1.1\r\n\r\n"},
|
||||
{400, "GET / HTTP/1.1\r\nHost: localhost:bad_port\r\n\r\n"},
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue