[Using dev@ as a public TODO list to avoid pushing stack on a task.]

In mod_dav_svn/mirror.c:dav_svn__location_body_filter() and
dav_svn__location_in_filter() are code blocks like this:

    if (uri.path)
        canonicalized_uri = svn_urlpath__canonicalize(uri.path, r->pool);
    else
        canonicalized_uri = uri.path;
    if (strcmp(canonicalized_uri, root_dir) == 0) {
    [...]

So ... if uri.path == NULL, then canonicalized_uri is set to NULL, and then
that NULL is used in a strcmp().  Won't that SEGFAULT?

-- 
C. Michael Pilato <cmpil...@collab.net>
CollabNet   <>   www.collab.net   <>   Distributed Development On Demand

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to