aboutsummaryrefslogtreecommitdiffstats
path: root/package/uhttpd/src/uhttpd-utils.c
Commit message (Collapse)AuthorAgeFilesLines
* uhttpd: display errors in init script, code formatting changes, bump package ↵Jo-Philipp Wich2012-05-031-120/+124
| | | | | | version SVN-Revision: 31572
* Fixed: [PATCH 2/3] uhttpd URL-codec enhancements.Jo-Philipp Wich2016-03-201-15/+27
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | My apologies, the 2nd of those patches had a syntax error -- that's what I get for making a last-minute edit, even to the comments, without testing! :-p Here is the corrected patch. -- David From d259cff104d2084455476b82e92a3a27524f4263 Mon Sep 17 00:00:00 2001 From: David Favro <openwrt@meta-dynamic.com> Date: Fri, 27 Apr 2012 14:17:52 -0400 Subject: [PATCH] uhttpd URL-codec enhancements. * uh_urlencode() and uh_urldecode() now return an error condition for buffer-overflow and malformed-encoding rather than normal return with corrupt or truncated data. As HTTP request processing is currently implemented, this causes a 404 HTTP status returned to the client, while 400 is more appropriate. * Exposed urlencode() to Lua. * Lua's uhttpd.urlencode() and .urldecode() now raise an error condition for buffer-overflow and malformed-encoding rather than normal return with incorrect data. SVN-Revision: 31570
* uhttpd URL-codec bug fixes.Jo-Philipp Wich2012-05-031-5/+11
| | | | | | | | | | | | | | | | | | | * Fixed output-buffer-overflow bug in uh_urlencode() and uh_urldecode() [tested input-buffer index against output-buffer length]. In reality, this would not typically cause an overflow on decode, where the output string would be expected to be shorter than the input string; and uh_urlencode() seems to have been unreferenced in the source. * Fixed bug: uh_urlencode() and uh_urldecode() both read one extra byte from the input-string. While this could manifest in C code, the result was most egregious when called from Lua, where it caused an extra null byte to be embedded at the end of the output string. * uh_urlencode() cleanup: removed redundant bitwise-and. Signed-off-by: David Favro <openwrt@meta-dynamic.com> SVN-Revision: 31569
* uhttpd: cope with DES crypted passwd entries by not relying on a leading ↵Jo-Philipp Wich2011-11-091-5/+2
| | | | | | dollar sign to indicate a cipher SVN-Revision: 28886
* uhttpd: rework CyaSSL and OpenSSL integration; move protected recv() and ↵Jo-Philipp Wich2011-11-051-35/+44
| | | | | | send() operations below the ssl layer - fixes hangs when accessing via https SVN-Revision: 28761
* uhttpd: protect tcp receive operations with select, make tcp keep-alive ↵Jo-Philipp Wich2011-01-091-7/+23
| | | | | | optional (#8272) SVN-Revision: 24952
* uhttpd: redirect to same location with trailing slash appended if ↵Jo-Philipp Wich2010-11-101-2/+19
| | | | | | directories are requested SVN-Revision: 23952
* uhttpd: make it work without shadow password supportJo-Philipp Wich2010-11-061-1/+8
| | | | SVN-Revision: 23897
* uhttpd: fix segfault triggered by Basic Auth checkingJo-Philipp Wich2010-08-251-2/+0
| | | | SVN-Revision: 22805
* uhttpd: - fix parsing of interpreter entries in the config file, fixes ↵Jo-Philipp Wich2010-08-181-14/+13
| | | | | | serving of static files as .cgi with X-Wrt - better cope with connection aborts, especially during header transfer - fix return value checking of TLS reads and writes, solves some blocking issues SVN-Revision: 22692
* uhttpd: - more robust handling of network failures on static file serving - ↵Jo-Philipp Wich2010-08-141-47/+76
| | | | | | support unlimited amount of authentication realms, listener and client sockets - support for interpreters (.php => /usr/bin/php-cgi) SVN-Revision: 22630
* uhttpd: add option to reject requests from RFC1918 IPs to public server IPs ↵Jo-Philipp Wich2010-08-111-0/+15
| | | | | | (DNS rebinding countermeasure) SVN-Revision: 22589
* uhttpd: - fix a compile warning - support custom index file names - support ↵Jo-Philipp Wich2010-07-231-4/+20
| | | | | | custom error pages (or cgi handler) - add option to disable directory listings - add REDIRECT_STATUS for CGI requests, fixes php-cgi SVN-Revision: 22366
* uhttpd: - ignore authentication realms that refer to user accounts with no ↵Jo-Philipp Wich2010-04-241-2/+6
| | | | | | password set yet (X-Wrt compatibility) - fix off-by-one in CGI header parsing, fixes cgi programs that emit bad header lines (AsteriskGUI compatibility) - bump version SVN-Revision: 21121
* uhttpd: fix bug in path canonization introduced by r20883Jo-Philipp Wich2010-04-151-2/+3
| | | | SVN-Revision: 20885
* uhttpd: - make network timeout configurable, increase default to 30 seconds ↵Jo-Philipp Wich2010-04-151-4/+78
| | | | | | (#7067) - follow symlinks in docroot and add option to disable that - fix mimetype detection for files with combined extensions (.tar.gz, ...) SVN-Revision: 20883
* uhttpd: block SIGCHLD until it is expected (#6957)Jo-Philipp Wich2010-03-271-0/+19
| | | | SVN-Revision: 20513
* add uhttpd (moved from LuCI trunk)Jo-Philipp Wich2010-03-251-0/+749
SVN-Revision: 20428