db2a8b
From d2f5d424ba8752f9a9e9dad410546ec1b46caa0a Mon Sep 17 00:00:00 2001
db2a8b
From: Adam Reichold <adam.reichold@t-online.de>
db2a8b
Date: Tue, 6 Nov 2018 09:08:06 +0100
db2a8b
Subject: [PATCH] pdfdetach: Check for valid file name of embedded file before
db2a8b
 using it to determine save path.
db2a8b
db2a8b
Closes #660
db2a8b
---
db2a8b
 utils/pdfdetach.cc | 24 ++++++++++++++++++------
db2a8b
 1 file changed, 18 insertions(+), 6 deletions(-)
db2a8b
db2a8b
diff --git a/utils/pdfdetach.cc b/utils/pdfdetach.cc
db2a8b
index a8720c64..71fa8608 100644
db2a8b
--- a/utils/pdfdetach.cc
db2a8b
+++ b/utils/pdfdetach.cc
db2a8b
@@ -191,14 +191,18 @@ int main(int argc, char *argv[]) {
db2a8b
       fileSpec = static_cast<FileSpec *>(embeddedFiles->get(i));
db2a8b
       printf("%d: ", i+1);
db2a8b
       s1 = fileSpec->getFileName();
db2a8b
-      if ((s1->getChar(0) & 0xff) == 0xfe && (s1->getChar(1) & 0xff) == 0xff) {
db2a8b
+      if (!s1) {
db2a8b
+	exitCode = 3;
db2a8b
+	goto err2;
db2a8b
+      }
db2a8b
+      if (s1->hasUnicodeMarker()) {
db2a8b
         isUnicode = gTrue;
db2a8b
         j = 2;
db2a8b
       } else {
db2a8b
         isUnicode = gFalse;
db2a8b
         j = 0;
db2a8b
       }
db2a8b
-      while (j < fileSpec->getFileName()->getLength()) {
db2a8b
+      while (j < s1->getLength()) {
db2a8b
         if (isUnicode) {
db2a8b
           u = ((s1->getChar(j) & 0xff) << 8) | (s1->getChar(j+1) & 0xff);
db2a8b
           j += 2;
db2a8b
@@ -228,14 +232,18 @@ int main(int argc, char *argv[]) {
db2a8b
 	p = path;
db2a8b
       }
db2a8b
       s1 = fileSpec->getFileName();
db2a8b
-      if ((s1->getChar(0) & 0xff) == 0xfe && (s1->getChar(1) & 0xff) == 0xff) {
db2a8b
+      if (!s1) {
db2a8b
+	exitCode = 3;
db2a8b
+	goto err2;
db2a8b
+      }
db2a8b
+      if (s1->hasUnicodeMarker()) {
db2a8b
         isUnicode = gTrue;
db2a8b
         j = 2;
db2a8b
       } else {
db2a8b
         isUnicode = gFalse;
db2a8b
         j = 0;
db2a8b
       }
db2a8b
-      while (j < fileSpec->getFileName()->getLength()) {
db2a8b
+      while (j < s1->getLength()) {
db2a8b
         if (isUnicode) {
db2a8b
           u = ((s1->getChar(j) & 0xff) << 8) | (s1->getChar(j+1) & 0xff);
db2a8b
           j += 2;
db2a8b
@@ -276,14 +284,18 @@ int main(int argc, char *argv[]) {
db2a8b
     } else {
db2a8b
       p = path;
db2a8b
       s1 = fileSpec->getFileName();
db2a8b
-      if ((s1->getChar(0) & 0xff) == 0xfe && (s1->getChar(1) & 0xff) == 0xff) {
db2a8b
+      if (!s1) {
db2a8b
+	exitCode = 3;
db2a8b
+	goto err2;
db2a8b
+      }
db2a8b
+      if (s1->hasUnicodeMarker()) {
db2a8b
         isUnicode = gTrue;
db2a8b
         j = 2;
db2a8b
       } else {
db2a8b
         isUnicode = gFalse;
db2a8b
         j = 0;
db2a8b
       }
db2a8b
-      while (j < fileSpec->getFileName()->getLength()) {
db2a8b
+      while (j < s1->getLength()) {
db2a8b
         if (isUnicode) {
db2a8b
           u = ((s1->getChar(j) & 0xff) << 8) | (s1->getChar(j+1) & 0xff);
db2a8b
           j += 2;
db2a8b
-- 
db2a8b
2.19.1
db2a8b