Skip to content

Enforce the line size limit on complete status and chunk-size lines - #517

Merged
ericmj merged 1 commit into
mainfrom
http1-line-size-limit
Sep 27, 2026
Merged

ericmj merged 1 commit into
mainfrom
http1-line-size-limit

Conversation

@ericmj

@ericmj ericmj commented Sep 27, 2026

Copy link
Copy Markdown
Member

:max_header_list_size was only checked for a status line or chunk-size line while it was buffered incomplete, so the same line arriving complete in one message wasn't limited. Both paths now apply the limit, and a chunk-size line is measured as a whole, size digits and chunk extensions included.

The chunk-size and chunk-extension parsing now happens in one step instead of going through a separate {:chunked, :metadata, size} state.

The limit was only checked while buffering an incomplete line, so a status
line or chunk-size line larger than :max_header_list_size was accepted
when it arrived complete in one message. A chunk-size line is now measured
as a whole, size digits and chunk extensions included, both when it
arrives in one message and when it is buffered.
@coveralls

Copy link
Copy Markdown

Coverage Report for CI Build 185

Coverage increased (+0.01%) to 89.571%

Details

  • Coverage increased (+0.01%) from the base build.
  • Patch coverage: 18 of 18 lines across 1 file are fully covered (100%).
  • No coverage regressions found.

Uncovered Changes

No uncovered changes found.

Coverage Regressions

No coverage regressions found.


Coverage Stats

Coverage Status
Relevant Lines: 1889
Covered Lines: 1692
Line Coverage: 89.57%
Coverage Strength: 656.09 hits per line

馃挍 - Coveralls

@ericmj
ericmj marked this pull request as ready for review September 27, 2026 18:49
@ericmj
ericmj merged commit 4d163e4 into main Sep 27, 2026
3 checks passed
@ericmj
ericmj deleted the http1-line-size-limit branch September 27, 2026 18:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants