File php-5.1.2-CVE-2006-1490.patch of Package php

--- ext/standard/html.c	2006/01/01 12:50:14	1.111.2.1
+++ ext/standard/html.c	2006/02/25 21:32:11	1.111.2.2
@@ -18,7 +18,7 @@
    +----------------------------------------------------------------------+
 */
 
-/* $Id: html.c,v 1.111.2.1 2006/01/01 12:50:14 sniper Exp $ */
+/* $Id: html.c,v 1.111.2.2 2006/02/25 21:32:11 rasmus Exp $ */
 
 /*
  * HTML entity resources:
@@ -884,7 +884,7 @@
 	unsigned char replacement[15];
 	int replacement_len;
 
-	ret = estrdup(old);
+	ret = estrndup(old, oldlen);
 	retlen = oldlen;
 	if (!retlen) {
 		goto empty_source;
openSUSE Build Service is sponsored by