diff options
Diffstat (limited to 'activesupport/test/xml_mini')
-rw-r--r-- | activesupport/test/xml_mini/libxmlsax_engine_test.rb | 8 | ||||
-rw-r--r-- | activesupport/test/xml_mini/nokogirisax_engine_test.rb | 5 |
2 files changed, 7 insertions, 6 deletions
diff --git a/activesupport/test/xml_mini/libxmlsax_engine_test.rb b/activesupport/test/xml_mini/libxmlsax_engine_test.rb index 6d5b3673fa..864810099e 100644 --- a/activesupport/test/xml_mini/libxmlsax_engine_test.rb +++ b/activesupport/test/xml_mini/libxmlsax_engine_test.rb @@ -14,8 +14,6 @@ class LibXMLSAXEngineTest < Test::Unit::TestCase def setup @default_backend = XmlMini.backend XmlMini.backend = 'LibXMLSAX' - - LibXML::XML::Error.set_handler(&lambda { |error| }) #silence libxml, exceptions will do end def teardown @@ -24,7 +22,8 @@ class LibXMLSAXEngineTest < Test::Unit::TestCase def test_exception_thrown_on_expansion_attack assert_raise LibXML::XML::Error do - attack_xml = %{<?xml version="1.0" encoding="UTF-8"?> + attack_xml = <<-EOT + <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE member [ <!ENTITY a "&b;&b;&b;&b;&b;&b;&b;&b;&b;&b;"> <!ENTITY b "&c;&c;&c;&c;&c;&c;&c;&c;&c;&c;"> @@ -37,7 +36,8 @@ class LibXMLSAXEngineTest < Test::Unit::TestCase <member> &a; </member> - } + EOT + Hash.from_xml(attack_xml) end end diff --git a/activesupport/test/xml_mini/nokogirisax_engine_test.rb b/activesupport/test/xml_mini/nokogirisax_engine_test.rb index 43f1cda0e0..1149d0fecc 100644 --- a/activesupport/test/xml_mini/nokogirisax_engine_test.rb +++ b/activesupport/test/xml_mini/nokogirisax_engine_test.rb @@ -8,7 +8,7 @@ rescue LoadError # Skip nokogiri tests else -class NokogiriEngineTest < Test::Unit::TestCase +class NokogiriSAXEngineTest < Test::Unit::TestCase include ActiveSupport def setup @@ -36,7 +36,7 @@ class NokogiriEngineTest < Test::Unit::TestCase end def test_exception_thrown_on_expansion_attack - assert_raise Nokogiri::XML::SyntaxError do + assert_raise RuntimeError do attack_xml = <<-EOT <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE member [ @@ -52,6 +52,7 @@ class NokogiriEngineTest < Test::Unit::TestCase &a; </member> EOT + Hash.from_xml(attack_xml) end end |