From 7a6753ca332d3b6ce6651b6aae3ddb143c0ec8bb Mon Sep 17 00:00:00 2001 From: Joris Vink Date: Thu, 29 Dec 2022 12:58:21 +0100 Subject: [PATCH] Force lowercase on internal HTTP header names. --- src/http.c | 3 +++ 1 file changed, 3 insertions(+) diff --git a/src/http.c b/src/http.c index 75b29e5..5243d5d 100644 --- a/src/http.c +++ b/src/http.c @@ -1798,6 +1798,9 @@ http_validate_header(char *header) break; } + if (*p >= 'A' && *p <= 'Z') + *p += 32; + if (http_token[idx] == 0x00) return (NULL); }