1
0
mirror of https://github.com/php/php-src.git synced 2026-04-14 11:32:11 +02:00
Files
archived-php-src/ext
Christoph M. Becker a08847ab39 Fix #66783: UAF when appending DOMDocument to element
According to the DOM standard, elements may only contain element, text,
processing instruction and comment nodes[1].  It is also specified that
a HierarchyRequestError should be thrown if a document is to be
inserted[2].  We follow that standard, and prevent the use-after-free
this way.

[1] <https://dom.spec.whatwg.org/#node-trees>
[2] <https://dom.spec.whatwg.org/#mutation-algorithms>

Closes GH-6765.
2021-03-17 12:37:18 +01:00
..
2021-02-02 10:31:16 +01:00
2021-01-25 10:44:05 +00:00
2020-08-31 09:32:55 +02:00
2020-10-30 15:47:18 +01:00
2020-06-23 16:00:11 +02:00
2020-08-24 17:36:50 +02:00
2020-10-15 10:16:56 +02:00
2020-02-03 13:41:31 +01:00
2020-10-09 15:24:53 +02:00
2020-10-22 17:05:07 +01:00
2020-07-28 10:27:22 +02:00
2020-10-26 15:40:12 +01:00
2021-03-15 14:38:09 +01:00
2021-03-15 14:38:09 +01:00
2021-02-02 16:46:16 +01:00
2020-10-29 13:09:19 +01:00
2021-03-15 14:47:45 +01:00
2020-10-28 12:18:02 +01:00
2020-02-03 13:41:31 +01:00
2020-08-05 10:39:30 +02:00
2020-05-13 23:25:28 +02:00
2020-11-02 11:39:42 +01:00
2020-08-26 12:11:22 +02:00
2020-08-10 12:25:26 +02:00
2020-01-30 13:06:25 +01:00
2020-10-30 15:47:18 +01:00
2020-02-03 13:41:31 +01:00