[Tickets #14318] CSS Parser 100% CPU usage

noreply at bugs.horde.org noreply at bugs.horde.org
Wed Apr 6 12:57:38 UTC 2016


DO NOT REPLY TO THIS MESSAGE. THIS EMAIL ADDRESS IS NOT MONITORED.

Ticket URL: https://bugs.horde.org/ticket/14318
------------------------------------------------------------------------------
  Ticket             | 14318
  Created By         | azurit at pobox.sk
  Summary            | CSS Parser 100% CPU usage
  Queue              | Horde Framework Packages
  Type               | Bug
  State              | Unconfirmed
  Priority           | 3. High
  Milestone          |
  Patch              |
  Owners             |
------------------------------------------------------------------------------


azurit at pobox.sk (2016-04-06 12:57) wrote:

After upgrade to 1.0.9, Horde_CSS_Parser started to take 100% CPU in  
some cases and possibly causing a DoS (when max_execution_time is  
disabled):

2016-04-06T14:23:09+02:00 EMERG: HORDE [imp] Maximum execution time of
120 seconds exceeded [pid 20629 on line 578 of
"/usr/share/php/Horde/Css/Parser/vendor/sabberworm/php-css-parser/lib/Sabberworm/CSS/Parser.php"]

2016-04-06T14:23:08+02:00 EMERG: HORDE [imp] Maximum execution time of
120 seconds exceeded [pid 20617 on line 18 of
"/usr/share/php/Horde/Css/Parser/vendor/sabberworm/php-css-parser/lib/Sabberworm/CSS/Parsing/UnexpectedTokenException.php"]

  2016-04-06T14:34:29+02:00 EMERG: HORDE [imp] Maximum execution time of
120 seconds exceeded [pid 7743 on line 96 of
"/usr/share/php/Horde/Css/Parser/vendor/sabberworm/php-css-parser/lib/Sabberworm/CSS/Parser.php"]

Downgrading to 1.0.8 seems to fix the problem.






More information about the bugs mailing list