1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47
|
--TEST--
Test DateInterval::__unserialize OSS fuzz issues
--FILE--
<?php
$files = [
'ossfuzz-55589.txt',
'ossfuzz-55599.txt',
'ossfuzz-55727.txt',
'ossfuzz-56931.txt',
];
foreach ($files as $file) {
echo "{$file}: ";
$s = file_get_contents(__DIR__ . "/{$file}");
try {
$x = unserialize(substr($s, strpos($s, "|") + 1));
} catch (Error $e) {
echo get_class($e), ': ', $e->getMessage(), "\n";
}
var_dump($x);
echo "\n\n";
}
?>
--EXPECTF--
ossfuzz-55589.txt:
%s: unserialize(): Error at offset 39 of 39 bytes in %sunserialize-test.php on line %d
bool(false)
ossfuzz-55599.txt:
%s: unserialize(): Error at offset 26 of 26 bytes in %sunserialize-test.php on line %d
Error: Invalid serialization data for DateTime object
bool(false)
ossfuzz-55727.txt:
%s: unserialize(): Error at offset 230 of 509 bytes in %sunserialize-test.php on line %d
bool(false)
ossfuzz-56931.txt:
%s: unserialize(): Error at offset 39 of 39 bytes in %sunserialize-test.php on line %d
Deprecated: Creation of dynamic property DateInterval::$ is deprecated in %s on line %d
bool(false)
|