From 2e4fda2c67ce98c9be9092effe2522c1de9f7efc Mon Sep 17 00:00:00 2001 From: Ben Fuhrmannek Date: Fri, 3 Sep 2021 13:25:33 +0200 Subject: fixed session encryption in php8 + related test cases --- .../crypt_session_corrupted_session.phpt | 2 +- .../crypt_session_invalid_simul.phpt | 15 +++++++--- .../crypt_session_invalid_simul_php73.phpt | 33 ++++++++++++++++++++++ .../crypt_session_read_uncrypt.phpt | 16 +++++++---- .../set_custom_session_handler.phpt | 2 +- .../set_custom_session_handler2.phpt | 2 +- 6 files changed, 57 insertions(+), 13 deletions(-) create mode 100644 src/tests/session_encryption/crypt_session_invalid_simul_php73.phpt (limited to 'src/tests/session_encryption') diff --git a/src/tests/session_encryption/crypt_session_corrupted_session.phpt b/src/tests/session_encryption/crypt_session_corrupted_session.phpt index 6f9c287..db3f949 100644 --- a/src/tests/session_encryption/crypt_session_corrupted_session.phpt +++ b/src/tests/session_encryption/crypt_session_corrupted_session.phpt @@ -6,7 +6,7 @@ Set a custom session handler = 70400) print "skip"; ?> --INI-- sp.configuration_file={PWD}/config/config_crypt_session.ini -session.save_path = "/tmp" +session.save_path="/tmp" --ENV-- return << + --INI-- sp.configuration_file={PWD}/config/config_crypt_session_simul.ini +display_errors=0 +log_errors=1 +error_log="{PWD}"/crypt_session_invalid_simul.tmp --ENV-- return << --EXPECTF-- -array(1) { - ["toto"]=> - string(4) "tata" +array(0) { } +%aPHP Warning: [snuffleupagus][127.0.0.2][cookie_encryption][simulation] Something went wrong with the decryption of the session. Using the cookie 'as is' instead of decrypting it in %a/crypt_session_invalid_simul.php on line 9 +%aPHP Warning: session_start(): Failed to decode session object. Session has been destroyed in %a/crypt_session_invalid_simul.php on line 9 diff --git a/src/tests/session_encryption/crypt_session_invalid_simul_php73.phpt b/src/tests/session_encryption/crypt_session_invalid_simul_php73.phpt new file mode 100644 index 0000000..4d1f747 --- /dev/null +++ b/src/tests/session_encryption/crypt_session_invalid_simul_php73.phpt @@ -0,0 +1,33 @@ +--TEST-- +SESSION crypt and bad decrypt +--SKIPIF-- += 70400) print "skip"; ?> +--INI-- +sp.configuration_file={PWD}/config/config_crypt_session_simul.ini +display_errors=0 +log_errors=1 +error_log="{PWD}"/crypt_session_invalid_simul.tmp +--ENV-- +return << +--EXPECTF-- +array(0) { +} +%aPHP Warning: [snuffleupagus][127.0.0.2][cookie_encryption][simulation] Something went wrong with the decryption of the session. Using the cookie 'as is' instead of decrypting it in %a/crypt_session_invalid_simul%a.php on line 9 diff --git a/src/tests/session_encryption/crypt_session_read_uncrypt.phpt b/src/tests/session_encryption/crypt_session_read_uncrypt.phpt index 5e81b52..e2e1737 100644 --- a/src/tests/session_encryption/crypt_session_read_uncrypt.phpt +++ b/src/tests/session_encryption/crypt_session_read_uncrypt.phpt @@ -4,25 +4,28 @@ SESSION crypt/decrypt valid --INI-- sp.configuration_file={PWD}/config/config_crypt_session_simul.ini +session.save_path="{PWD}" +display_errors=0 +log_errors=1 +error_log="{PWD}"/crypt_session_read_uncrypt.tmp --ENV-- return << --EXPECTF-- @@ -31,3 +34,4 @@ array(1) { string(4) "tata" } OK +%aPHP Warning: [snuffleupagus][127.0.0.1][cookie_encryption][simulation] Buffer underflow tentative detected in cookie encryption handling for the session. Using the cookie 'as is' instead of decrypting it in %a/crypt_session_read_uncrypt.php on line 9 diff --git a/src/tests/session_encryption/set_custom_session_handler.phpt b/src/tests/session_encryption/set_custom_session_handler.phpt index 725ee43..1b81a04 100644 --- a/src/tests/session_encryption/set_custom_session_handler.phpt +++ b/src/tests/session_encryption/set_custom_session_handler.phpt @@ -4,7 +4,7 @@ Set a custom session handler --INI-- sp.configuration_file={PWD}/config/config_crypt_session.ini -session.save_path = "/tmp" +session.save_path="/tmp" --ENV-- return << --INI-- sp.configuration_file={PWD}/config/config_crypt_session.ini -session.save_path = "/tmp" +session.save_path="/tmp" --ENV-- return <<