diff options
author | Clement Laforet <clement@FreeBSD.org> | 2005-12-13 10:51:41 +0000 |
---|---|---|
committer | Clement Laforet <clement@FreeBSD.org> | 2005-12-13 10:51:41 +0000 |
commit | 153589a262f4f47308a79be8fa798fcd70e90eff (patch) | |
tree | 2d88574c428575b8749de068bf362d70bb9114d6 /www/apache22 | |
parent | 0d060ac84fdbb0e23cbab9b4e747c0c56ff0992c (diff) |
Notes
Diffstat (limited to 'www/apache22')
-rw-r--r-- | www/apache22/files/patch-secfix-CAN-2005-3352 | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/www/apache22/files/patch-secfix-CAN-2005-3352 b/www/apache22/files/patch-secfix-CAN-2005-3352 index cc97428d6b80..ec323c26da5a 100644 --- a/www/apache22/files/patch-secfix-CAN-2005-3352 +++ b/www/apache22/files/patch-secfix-CAN-2005-3352 @@ -5,7 +5,7 @@ referer = apr_table_get(r->headers_in, "Referer"); if (referer && *referer) { - return apr_pstrdup(r->pool, referer); -+ return apr_escape_html(r->pool, referer); ++ return ap_escape_html(r->pool, referer); } else { /* XXX: This used to do *value = '\0'; ... which is totally bogus |