b1v1r
e6699ca7bf
Allow for more robust parsing for multipart header folding. Reported by Sogeti/ESEC R&D (MODSEC-118). Added additional multipart regression tests.
2010-02-05 18:11:36 +00:00
b1v1r
589274903d
Added PCRE limits and studying by default to help alleviate REDoS reported by Sogeti/ESEC R&D (MODSEC-119).
2010-02-05 18:09:19 +00:00
b1v1r
efc9d4e68f
Fixed parsing quoted strings in multipart Content-Disposition headers (part2).
2009-11-05 19:49:30 +00:00
b1v1r
d33f656b93
Fixed parsing quoted strings in multipart Content-Disposition headers.
2009-11-05 19:36:32 +00:00
b1v1r
4a248f3202
Update regression tests.
2009-07-27 21:56:33 +00:00
b1v1r
2d9e56bede
Cleanup regression tests.
2009-05-16 11:17:36 +00:00
b1v1r
bf4b7e3b43
Added regression test for zero length part name.
2009-05-16 04:47:30 +00:00
b1v1r
b566ad5a17
Prepare 2.5.8 release fixing MODSEC-27.
2009-03-05 17:57:50 +00:00
brectanus
eadc2832fe
Cleanup regression suite to make it a bit more user-friendly.
2008-07-31 16:59:37 +00:00
brectanus
c066e8b3c4
Fixed VAR_CACHE/VAR_DONT_CACHE values with reasons for DONT.
...
Added a DEBUG_MEM define to disable optimization and for future enhcement.
Prevented "counting" vars from being cached.
Prevented vars from being cached unless they are marked "available" in phase.
Now use var->value as the cache hash key as a unique value.
Fixed which pools we are using for rule processing.
Updated regression tests for tfns.
Updated regression test script to handle extra APR_POOL_DEBUG output.
See #364 .
2008-07-30 22:35:52 +00:00
brectanus
40b6cd3ebe
Cleanup. See #364 .
2008-07-29 05:47:14 +00:00
brectanus
6ebc5ad6e7
Transformation caching fixes. See #364 .
2008-07-29 00:18:16 +00:00
brectanus
ade22567bf
Backport regression suite to 2.5.
2008-07-25 23:15:08 +00:00