--- parser3/src/include/pa_string.h 2001/03/07 09:29:53 1.26 +++ parser3/src/include/pa_string.h 2001/03/14 08:50:01 1.35 @@ -1,5 +1,9 @@ /* - $Id: pa_string.h,v 1.26 2001/03/07 09:29:53 paf Exp $ + Parser + Copyright (c) 2001 ArtLebedev Group (http://www.artlebedev.com) + Author: Alexander Petrosyan (http://design.ru/paf) + + $Id: pa_string.h,v 1.35 2001/03/14 08:50:01 paf Exp $ */ /* @@ -19,7 +23,7 @@ #define PA_STRING_H #ifdef HAVE_CONFIG_H -#include "pa_config.h" +# include "pa_config.h" #endif #include @@ -27,12 +31,22 @@ #include "pa_pool.h" #include "pa_types.h" +#define UNTAINT_TIMES_BIGGER 10 + #ifndef NO_STRING_ORIGIN -# define STRING_APPEND_PARAMS const char *src, size_t size, char *file, uint line -# define APPEND(src, size, file, line) real_append(src, size, file, line) +# define STRING_APPEND_PARAMS \ + const char *src, size_t size, \ + bool tainted, \ + const char *file, uint line +# define APPEND(src, size, file, line) real_append(src, size, false, file, line) +# define APPEND_TAINTED(src, size, file, line) real_append(src, size, true, file, line) #else -# define STRING_APPEND_PARAMS const char *src, size_t size -# define APPEND(src, size, file, line) real_append(src, size) +# define STRING_APPEND_PARAMS \ + const char *src, \ + size_t size, \ + bool tainted +# define APPEND(src, size, file, line) real_append(src, size, false) +# define APPEND_TAINTED(src, size, file, line) real_append(src, size, true) #endif #define APPEND_CONST(src) APPEND(src, 0, 0, 0) @@ -43,6 +57,22 @@ public: CR_GROW_PERCENT=60 }; + enum Untaint_lang { + UNKNOWN=0, // when get by name fails + NO, // clean + YES, // tainted, untaint language as assigned later + // untaint languages. assigned by ^untaint[lang]{...} + PASS_APPENDED, + // leave language built into string being appended + // just a flag, that value not stored + AS_IS, + TABLE, + SQL, + JS, + HTML, + HTML_TYPO + }; + public: String(Pool& apool); @@ -63,8 +93,8 @@ public: } bool operator != (const String& src) const { return cmp(src)!=0; } - bool operator == (char* src) const; - String& operator += (const String& src); + bool operator == (const char* b_ptr) const; + String& append(const String& src, Untaint_lang lang); uint hash_code() const; @@ -76,11 +106,14 @@ private: // the number of rows in chunk int count; union Row { - // chunk item - struct { - const char *ptr; // pointer to the start of string fragment - size_t size; // length of the fragment - Origin origin; // origin of this fragment + // fragment + struct { + const char *ptr; // pointer to the start + size_t size; // length + Untaint_lang lang; // untaint flag, later untaint language +#ifndef NO_STRING_ORIGIN + Origin origin; // origin +#endif } item; Chunk *link; // link to the next chunk in chain } rows[CR_PREALLOCATED_COUNT]; @@ -112,6 +145,7 @@ private: return append_here == link_row; } void expand(); + void set_lang(Chunk::Row *row, Untaint_lang lang, size_t size); private: //disabled