ruby/lib/webrick
usa 8eff476bce merge revision(s) 3ce238b5f9
WEBrick: prevent response splitting and header injection

This is a follow up to d9d4a28.
The commit prevented CRLR, but did not address an isolated CR or an
isolated LF.

Co-Authored-By: NARUSE, Yui <naruse@airemix.jp>


git-svn-id: svn+ssh://ci.ruby-lang.org/ruby/branches/ruby_2_4@67819 b2dd03c8-39d4-4d8f-98ff-823fe69b080e
2019-10-01 11:05:56 +00:00
..
httpauth merge revision(s) 36e057e26e 2019-10-01 11:05:22 +00:00
httpservlet merge revision(s) 60584,62954,62955,62956,62957,62958,62959,63008: 2018-03-28 13:54:58 +00:00
accesslog.rb Add frozen_string_literal: false for all files 2015-12-16 05:07:31 +00:00
cgi.rb merge revision(s) 62953: 2018-03-28 09:39:53 +00:00
compat.rb Add frozen_string_literal: false for all files 2015-12-16 05:07:31 +00:00
config.rb Delay Utils.getservername until needed. 2016-12-07 12:59:48 +00:00
cookie.rb * lib/cgi/cookie.rb (parse): don't allow , as a separator. [Bug #12791] 2016-09-27 03:17:47 +00:00
htmlutils.rb Add frozen_string_literal: false for all files 2015-12-16 05:07:31 +00:00
httpauth.rb Add frozen_string_literal: false for all files 2015-12-16 05:07:31 +00:00
httpproxy.rb stdlib: avoid extra calls to eliminate "\n" from Base64 2016-01-10 00:35:43 +00:00
httprequest.rb merge revision(s) 62960,62961,62962,62963,62964,62965: 2018-03-28 12:23:29 +00:00
httpresponse.rb merge revision(s) 3ce238b5f9 2019-10-01 11:05:56 +00:00
https.rb Add frozen_string_literal: false for all files 2015-12-16 05:07:31 +00:00
httpserver.rb merge revision(s) 61197: [Backport #14184] 2017-12-14 13:14:12 +00:00
httpservlet.rb Add frozen_string_literal: false for all files 2015-12-16 05:07:31 +00:00
httpstatus.rb merge revision(s) 59897: 2017-09-14 11:24:10 +00:00
httputils.rb Add frozen_string_literal: false for all files 2015-12-16 05:07:31 +00:00
httpversion.rb Add frozen_string_literal: false for all files 2015-12-16 05:07:31 +00:00
log.rb merge revision(s) 59897: 2017-09-14 11:24:10 +00:00
server.rb merge revision(s) 60123,60172,60189,60208,60210,60211: [Backport #14005] 2017-12-14 13:31:41 +00:00
ssl.rb * lib/webrick/ssl.rb: Accept string value for SSLCertName. It is used 2016-05-07 13:37:18 +00:00
utils.rb webrick: use monotonic clock for timeouts 2016-10-14 01:48:52 +00:00
version.rb Add frozen_string_literal: false for all files 2015-12-16 05:07:31 +00:00