fielding    97/05/08 01:23:32

  Modified:    src       CHANGES mod_status.c
  Log:
  Escape the HTML-sensitive characters in the Request-URI that is
  output for each child by mod_status.
  
  Submitted by: Dean Gaudet and Ken Coar, PR#501
  Reviewed by: Roy Fielding, Jim Jagielski
  
  Revision  Changes    Path
  1.268     +3 -0      apache/src/CHANGES
  
  Index: CHANGES
  ===================================================================
  RCS file: /export/home/cvs/apache/src/CHANGES,v
  retrieving revision 1.267
  retrieving revision 1.268
  diff -C3 -r1.267 -r1.268
  *** CHANGES   1997/05/08 07:57:43     1.267
  --- CHANGES   1997/05/08 08:23:30     1.268
  ***************
  *** 1,5 ****
  --- 1,8 ----
    Changes with Apache 1.2
    
  +   *) Escape the HTML-sensitive characters in the Request-URI that is
  +      output for each child by mod_status. [Dean Gaudet and Ken Coar] PR#501
  + 
      *) Properly initialize the flock structures used by the mutex locking
         around accept() when USE_FCNTL_SERIALIZED_ACCEPT is defined.
         [Marc Slemko]
  
  
  
  1.47      +3 -2      apache/src/mod_status.c
  
  Index: mod_status.c
  ===================================================================
  RCS file: /export/home/cvs/apache/src/mod_status.c,v
  retrieving revision 1.46
  retrieving revision 1.47
  diff -C3 -r1.46 -r1.47
  *** mod_status.c      1997/04/24 23:35:23     1.46
  --- mod_status.c      1997/05/08 08:23:31     1.47
  ***************
  *** 497,503 ****
                    format_byte_out(r,bytes);
                    rputs(")\n",r);
                    rprintf(r," <i>%s {%s}</i><br>\n\n",
  !                         score_record.client, score_record.request);
                }
                else /* !no_table_report */
                {
  --- 497,504 ----
                    format_byte_out(r,bytes);
                    rputs(")\n",r);
                    rprintf(r," <i>%s {%s}</i><br>\n\n",
  !                         score_record.client,
  !                         escape_html(r->pool, score_record.request));
                }
                else /* !no_table_report */
                {
  ***************
  *** 553,559 ****
                        (float)bytes/MBYTE);
                    rprintf(r,"<td>%s<td nowrap>%s<td nowrap>%s</tr>\n\n",
                            score_record.client, score_record.vhost,
  !                         score_record.request);
                }       /* no_table_report */
            }           /* !short_report */
        }               /* if (<active child>) */
  --- 554,560 ----
                        (float)bytes/MBYTE);
                    rprintf(r,"<td>%s<td nowrap>%s<td nowrap>%s</tr>\n\n",
                            score_record.client, score_record.vhost,
  !                         escape_html(r->pool, score_record.request));
                }       /* no_table_report */
            }           /* !short_report */
        }               /* if (<active child>) */
  
  
  

Reply via email to