diff --git a/Lib/test/test_wsgiref.py b/Lib/test/test_wsgiref.py index 8cca595ab1e..3f800eff2d6 100644 --- a/Lib/test/test_wsgiref.py +++ b/Lib/test/test_wsgiref.py @@ -166,6 +166,27 @@ class IntegrationTests(TestCase): " be of type list: " ) + def test_status_validation_errors(self): + def create_bad_app(status): + def bad_app(environ, start_response): + start_response(status, [("Content-Type", "text/plain; charset=utf-8")]) + return [b"Hello, world!"] + return bad_app + + tests = [ + ('200', 'AssertionError: Status must be at least 4 characters'), + ('20X OK', 'AssertionError: Status message must begin w/3-digit code'), + ('200OK', 'AssertionError: Status message must have a space after code'), + ] + + for status, exc_message in tests: + with self.subTest(status=status): + out, err = run_amock(create_bad_app(status)) + self.assertTrue(out.endswith( + b"A server error occurred. Please contact the administrator." + )) + self.assertEqual(err.splitlines()[-2], exc_message) + def test_wsgi_input(self): def bad_app(e,s): e["wsgi.input"].read() diff --git a/Lib/wsgiref/handlers.py b/Lib/wsgiref/handlers.py index 63d5993eca0..acb35479abe 100644 --- a/Lib/wsgiref/handlers.py +++ b/Lib/wsgiref/handlers.py @@ -226,7 +226,7 @@ class BaseHandler: self.headers = self.headers_class(headers) status = self._convert_string_type(status, "Status") assert len(status)>=4,"Status must be at least 4 characters" - assert int(status[:3]),"Status message must begin w/3-digit code" + assert status[:3].isdigit(), "Status message must begin w/3-digit code" assert status[3]==" ", "Status message must have a space after code" if __debug__: diff --git a/Misc/NEWS b/Misc/NEWS index 3eef15a42e0..bdcfebf8565 100644 --- a/Misc/NEWS +++ b/Misc/NEWS @@ -91,6 +91,9 @@ Core and Builtins Library ------- +- Issue #26560: Avoid potential ValueError in BaseHandler.start_response. + Initial patch by Peter Inglesby. + - Issue #26313: ssl.py _load_windows_store_certs fails if windows cert store is empty. Patch by Baji.