Details
Description
HTTP response corruption can occur if CR or LF are allowed within HTTP headers.
Activity
- All
- Comments
- History
- Activity
- Remote Attachments
- Subversion
| Repository | Revision | Date | User | Message |
| ICEsoft Public SVN Repository | #15147 | Fri Nov 09 16:00:22 MST 2007 | ted.goddard | check for null value before stripping CR and LF ( |
| Files Changed | ||||
MODIFY
/icefaces/branches/icefaces-1.6/icefaces/core/src/com/icesoft/faces/webapp/http/servlet/ServletRequestResponse.java
|
| Repository | Revision | Date | User | Message |
| ICEsoft Public SVN Repository | #15021 | Wed Oct 24 16:50:27 MDT 2007 | ted.goddard | CR and LF removed from HTTP headers to avoid response splitting ( |
| Files Changed | ||||
MODIFY
/icefaces/branches/icefaces-1.6/icefaces/core/src/com/icesoft/faces/webapp/http/servlet/ServletRequestResponse.java
|
| Repository | Revision | Date | User | Message |
| ICEsoft Public SVN Repository | #14891 | Thu Oct 04 16:46:07 MDT 2007 | ted.goddard | CR and LF removed from HTTP headers to avoid response splitting ( |
| Files Changed | ||||
MODIFY
/icefaces/trunk/icefaces/core/src/com/icesoft/faces/webapp/http/servlet/ServletRequestResponse.java
|
