From 23b057742e3cf199612fa8050ae86cae675e214e Mon Sep 17 00:00:00 2001 From: Stanislav Malyshev Date: Sat, 28 Jul 2018 22:16:29 -0700 Subject: [PATCH 1/2] Fix for bug #76582 The brigade seems to end up in a messed up state if something fails in shutdown, so we clean it up. --- sapi/apache2handler/sapi_apache2.c | 1 + 1 file changed, 1 insertion(+) diff --git a/sapi/apache2handler/sapi_apache2.c b/sapi/apache2handler/sapi_apache2.c index 6fa2521c384..0ebca9bca86 100644 --- a/sapi/apache2handler/sapi_apache2.c +++ b/sapi/apache2handler/sapi_apache2.c @@ -678,6 +678,7 @@ zend_first_try { if (!parent_req) { php_apache_request_dtor(r TSRMLS_CC); ctx->request_processed = 1; + apr_brigade_cleanup(brigade); bucket = apr_bucket_eos_create(r->connection->bucket_alloc); APR_BRIGADE_INSERT_TAIL(brigade, bucket); From c1de84014dbd541a0ce2d6730f996d59515a3932 Mon Sep 17 00:00:00 2001 From: Stanislav Malyshev Date: Sun, 9 Sep 2018 12:19:38 -0700 Subject: [PATCH 2/2] Update NEWS --- NEWS | 3 +++ 1 file changed, 3 insertions(+) diff --git a/NEWS b/NEWS index f29c45e358c..39aea8600a1 100644 --- a/NEWS +++ b/NEWS @@ -2,6 +2,9 @@ PHP NEWS ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||| ?? ??? 2018, PHP 5.6.38 +- Apache2 + . Fixed bug #76582 (XSS due to the header Transfer-Encoding: chunked). (Stas) + 19 Jul 2018, PHP 5.6.37 - Exif: