Changeset 1505279 is being indexed.

Correct the behaviour of CheckCaseOnly in mod_speling, according to the doc.

PR 44221 [Rainer Perske <perske uni-muenster de>]

include util_charset.h in ebcdic builds

Remove useless tests.


if (*x && apr_isspace(*x))


if (apr_isspace(*x))

Unbreak default case of RewriteBase not being set after r1410681

Contributed By: Evgeny Barsukov

Reviewed By: covener

fix r1416889 a different way -- the referer should be const too.

const fixes for mod_imagemap, fatal on old xlc due to returning apr_table_get result

from non const function.

Fixed type mismatch.

CVE-2012-3499 and CVE-2012-4558

Be sure to escape potential troubled strings

PR53963: don't merge the rewritebase down w/o an opt-in
Remove warnings

mod_speling.c:400:41: warning: data argument not used by format string [-Wformat-extra-args]

r->uri, nuri, ref);

mod_speling.c:508:53: warning: data argument not used by format string [-Wformat-extra-args]

r->uri, candidates->nelts, ref);

cppcheck: arrayIndexThenCheck - change the order of the tests in order to avoid a

potential out-of-bound access. I think that this module is obsolete, but doing so reduces

the noise in cppcheck output...

ccpcheck: duplicateExpression - 'vary_by_language' is tested twice
FallbackResource : Support for the 'disabled' argument

NetWare build tweaks.

Make more use of internal makefile macros;

axed now obsolete include paths.

Submitted by: normw gknw net.

remove now unecessary assignment

Use apr_pcalloc for rewritemap_entry struct, to avoid uninitialized entries.

PR: 53663

Submitted by: Mikhail T. <mi apache aldan algebra com>

style fix

add a pointer to 'rewriteoptions', without giving away the option name, if someone

happens to have rewrite trace on when mod_rewrite declines a non URL-path.

* modules/mappers/mod_rewrite.c (cmd_rewriteoptions, hook_uri2file):

Add "AllowAnyURI" flag which disables the strict URL-path input

string check introduced to fix CVE-2011-3368/CVE-2011-4317.

* docs/manual: Update docs.

Inspired by: covener

SECURITY: CVE-2012-2687 (

mod_negotiation: Escape filenames in variant list to prevent an

possible XSS for a site where untrusted users can upload files to a

location with MultiViews enabled.

* modules/mappers/mod_negotiation.c (make_variant_list): Escape

filenames in variant list.

Submitted by: Niels Heinen <heinenn>

Replace use of apr_file_write() with apr_file_write_full() to prevent

incomplete writes.

Add comments in some places where error handling/logging is missing.

PR: 53131.

Submitted by: Nicolas Viennot <apache viennot biz>, Stefan Fritsch

mod_rewrite: Fix RewriteCond integer checks to be parsed correctly.

PR: 53023

Submitted by: Axel Reinhold <apache>

Reviewed/Updated by: nd

static scope for rewritemap_mutex_type.

PR52845: "DirectoryIndex disabled" should blow away the DirectoryIndex settings

in the current config section, not just override previous config sections.

revert "overloaded" recent additions to mod_rewrite

add an internal sleep map function that expands to an empty string.

treat a rewriterule substitution that expands to "-" as if the rule

had a literal "-".

https also needs QS

Adjust CVE-2011-3368/CVE-2011-4317 fixes to rely solely on

core's translate-name to fail unsupported URIs.

Rewrite and proxy now decline what they don't support rather

than fail the request.

Suggested by: trawick

Implemented by: jorton

Tweaked by: wrowe

Further clarify the naming of the entity that originates the request by

calling that entity a useragent instead of a client.

