Changeset 50545
- Timestamp:
- 11/04/09 22:39:41 (4 months ago)
- Location:
- trunk/WebCore
- Files:
-
- 2 modified
-
ChangeLog (modified) (1 diff)
-
page/Page.cpp (modified) (1 diff)
Legend:
- Unmodified
- Added
- Removed
-
trunk/WebCore/ChangeLog
r50544 r50545 1 2009-11-04 Dan Kegel <dank@chromium.org> 2 3 Reviewed by Alexey Proskuryakov. 4 5 Fix buffer overrun in WebCore::Page::userStyleSheetLocationChanged() 6 https://bugs.webkit.org/show_bug.cgi?id=31138 7 8 Test: LayoutTests/platform/mac/fast/loader/user-stylesheet-fast-path.html in Valgrind 9 10 * page/Page.cpp: 11 (WebCore::Page::userStyleSheetLocationChanged): 12 1 13 2009-11-04 Timothy Hatcher <timothy@apple.com> 2 14 -
trunk/WebCore/page/Page.cpp
r49413 r50545 543 543 Vector<char> styleSheetAsUTF8; 544 544 if (base64Decode(encodedData, styleSheetAsUTF8)) 545 m_userStyleSheet = String::fromUTF8(styleSheetAsUTF8.data() );545 m_userStyleSheet = String::fromUTF8(styleSheetAsUTF8.data(), styleSheetAsUTF8.size()); 546 546 } 547 547