Bug 5255

Summary: webaccess tracebacks to log on \0 in username
Product: ThinLinc Reporter: Karl Mikaelsson <derfian>
Component: Web AccessAssignee: Henrik Andersson <hean01>
Status: CLOSED FIXED    
Severity: Normal Keywords: astrand_tester, prosaic
Priority: P2    
Version: trunk   
Target Milestone: 4.3.0   
Hardware: PC   
OS: Unknown   
Acceptance Criteria:

Description Karl Mikaelsson cendio 2014-09-12 16:44:37 CEST
A single client looping one request may produce up to a megabyte of log data per minute.
Comment 2 Henrik Andersson cendio 2014-09-16 13:37:30 CEST
Fixed in commit 29367.

The issue is reproduced by using following url:

https://tlwebaccess:300/main/?loginsubmit=1&username=cendio%00&pamresponse=pass
Comment 3 Peter Åstrand cendio 2014-10-09 11:32:15 CEST
Works.