- Added optional first parameter to XsltProcessor::registerPHPFunctions to only

allow certain functions to be called from XSLT.
This commit is contained in:
Christian Stocker 2005-04-06 12:26:29 +00:00
parent e7a2efe053
commit 997690b132
4 changed files with 45 additions and 2 deletions

2
NEWS
View file

@ -28,6 +28,8 @@ PHP NEWS
. added spl_autoload*() functions . added spl_autoload*() functions
. converted several 5.0 examples into c code . converted several 5.0 examples into c code
. added class File . added class File
- Added optional first parameter to XsltProcessor::registerPHPFunctions to only
allow certain functions to be called from XSLT. (Christian)
- Added the ability to override the autotools executables used by the buildconf - Added the ability to override the autotools executables used by the buildconf
script via the PHP_AUTOCONF and PHP_AUTOHEADER environmental variables. (Jon) script via the PHP_AUTOCONF and PHP_AUTOHEADER environmental variables. (Jon)
- Added several new functions to support the PostgreSQL v3 protocol introduced - Added several new functions to support the PostgreSQL v3 protocol introduced

View file

@ -78,6 +78,9 @@ void xsl_objects_free_storage(void *object TSRMLS_DC)
zend_hash_destroy(intern->parameter); zend_hash_destroy(intern->parameter);
FREE_HASHTABLE(intern->parameter); FREE_HASHTABLE(intern->parameter);
zend_hash_destroy(intern->registered_phpfunctions);
FREE_HASHTABLE(intern->registered_phpfunctions);
if (intern->node_list) { if (intern->node_list) {
zend_hash_destroy(intern->node_list); zend_hash_destroy(intern->node_list);
FREE_HASHTABLE(intern->node_list); FREE_HASHTABLE(intern->node_list);
@ -116,6 +119,7 @@ zend_object_value xsl_objects_new(zend_class_entry *class_type TSRMLS_DC)
intern->parameter = NULL; intern->parameter = NULL;
intern->hasKeys = 0; intern->hasKeys = 0;
intern->registerPhpFunctions = 0; intern->registerPhpFunctions = 0;
intern->registered_phpfunctions = NULL;
intern->node_list = NULL; intern->node_list = NULL;
intern->doc = NULL; intern->doc = NULL;
@ -124,6 +128,8 @@ zend_object_value xsl_objects_new(zend_class_entry *class_type TSRMLS_DC)
zend_hash_copy(intern->std.properties, &class_type->default_properties, (copy_ctor_func_t) zval_add_ref, (void *) &tmp, sizeof(zval *)); zend_hash_copy(intern->std.properties, &class_type->default_properties, (copy_ctor_func_t) zval_add_ref, (void *) &tmp, sizeof(zval *));
ALLOC_HASHTABLE(intern->parameter); ALLOC_HASHTABLE(intern->parameter);
zend_hash_init(intern->parameter, 0, NULL, ZVAL_PTR_DTOR, 0); zend_hash_init(intern->parameter, 0, NULL, ZVAL_PTR_DTOR, 0);
ALLOC_HASHTABLE(intern->registered_phpfunctions);
zend_hash_init(intern->registered_phpfunctions, 0, NULL, ZVAL_PTR_DTOR, 0);
retval.handle = zend_objects_store_put(intern, NULL, (zend_objects_free_object_storage_t) xsl_objects_free_storage, NULL TSRMLS_CC); retval.handle = zend_objects_store_put(intern, NULL, (zend_objects_free_object_storage_t) xsl_objects_free_storage, NULL TSRMLS_CC);
intern->handle = retval.handle; intern->handle = retval.handle;
retval.handlers = &xsl_object_handlers; retval.handlers = &xsl_object_handlers;

View file

@ -57,6 +57,7 @@ typedef struct _xsl_object {
HashTable *parameter; HashTable *parameter;
int hasKeys; int hasKeys;
int registerPhpFunctions; int registerPhpFunctions;
HashTable *registered_phpfunctions;
HashTable *node_list; HashTable *node_list;
php_libxml_node_object *doc; php_libxml_node_object *doc;
} xsl_object; } xsl_object;

View file

@ -267,6 +267,10 @@ static void xsl_ext_function_php(xmlXPathParserContextPtr ctxt, int nargs, int t
if (!zend_make_callable(&handler, &callable TSRMLS_CC)) { if (!zend_make_callable(&handler, &callable TSRMLS_CC)) {
php_error_docref(NULL TSRMLS_CC, E_WARNING, "Unable to call handler %s()", callable); php_error_docref(NULL TSRMLS_CC, E_WARNING, "Unable to call handler %s()", callable);
} else if ( intern->registerPhpFunctions == 2 && zend_hash_exists(intern->registered_phpfunctions, callable, strlen(callable) + 1) == 0) {
php_error_docref(NULL TSRMLS_CC, E_WARNING, "Not allowed to call handler '%s()'.", callable);
// Push an empty string, so that we at least have an xslt result...
valuePush(ctxt, xmlXPathNewString(""));
} else { } else {
result = zend_call_function(&fci, NULL TSRMLS_CC); result = zend_call_function(&fci, NULL TSRMLS_CC);
if (result == FAILURE) { if (result == FAILURE) {
@ -685,13 +689,43 @@ PHP_FUNCTION(xsl_xsltprocessor_register_php_functions)
{ {
zval *id; zval *id;
xsl_object *intern; xsl_object *intern;
zval *array_value, **entry, *new_string;
int name_len = 0;
char *name;
DOM_GET_THIS(id); DOM_GET_THIS(id);
intern = (xsl_object *)zend_object_store_get_object(id TSRMLS_CC); if (zend_parse_parameters_ex(ZEND_PARSE_PARAMS_QUIET, ZEND_NUM_ARGS() TSRMLS_CC, "a", &array_value) == SUCCESS) {
intern->registerPhpFunctions = 1; intern = (xsl_object *)zend_object_store_get_object(id TSRMLS_CC);
zend_hash_internal_pointer_reset(Z_ARRVAL_P(array_value));
while (zend_hash_get_current_data(Z_ARRVAL_P(array_value), (void **)&entry) == SUCCESS) {
SEPARATE_ZVAL(entry);
convert_to_string_ex(entry);
MAKE_STD_ZVAL(new_string);
ZVAL_LONG(new_string,1);
zend_hash_update(intern->registered_phpfunctions, Z_STRVAL_PP(entry), Z_STRLEN_PP(entry) + 1, &new_string, sizeof(zval*), NULL);
zend_hash_move_forward(Z_ARRVAL_P(array_value));
}
intern->registerPhpFunctions = 2;
RETURN_TRUE;
} else if (zend_parse_parameters_ex(ZEND_PARSE_PARAMS_QUIET, ZEND_NUM_ARGS() TSRMLS_CC, "s", &name, &name_len) == SUCCESS) {
intern = (xsl_object *)zend_object_store_get_object(id TSRMLS_CC);
MAKE_STD_ZVAL(new_string);
ZVAL_LONG(new_string,1);
zend_hash_update(intern->registered_phpfunctions, name, name_len + 1, &new_string, sizeof(zval*), NULL);
intern->registerPhpFunctions = 2;
} else {
intern = (xsl_object *)zend_object_store_get_object(id TSRMLS_CC);
intern->registerPhpFunctions = 1;
}
} }
/* }}} end xsl_xsltprocessor_register_php_functions(); */ /* }}} end xsl_xsltprocessor_register_php_functions(); */