Bug #76188 [Opn->Nab]: Change in treating unescaped - in character classes

From: Date: Thu, 05 Apr 2018 21:44:17 +0000
Subject: Bug #76188 [Opn->Nab]: Change in treating unescaped - in character classes
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-214627@lists.php.net to get a copy of this message
Edit report at https://bugs.php.net/bug.php?id=76188&edit=1 ID: 76188 Updated by: requinix@php.net Reported by: andi at splitbrain dot org Summary: Change in treating unescaped - in character classes -Status: Open +Status: Not a bug Type: Bug Package: PCRE related Operating System: Linux PHP Version: master-Git-2018-04-05 (Git) Block user comment: N Private report: N New Comment: It's PCRE2. In PCRE, > An error is generated if a POSIX character class (see below) or an escape sequence other than > one that defines a > single character appears at a point where a range ending character is expected. For example, > [z-\xff] is valid, but > [A-\d] and [A-[:digit:]] are not. https://www.pcre.org/original/doc/html/pcrepattern.html#SEC9 Note that only applied for the range end, meaning [\d-A] was allowed. https://3v4l.org/LC0hG If you update $tests to include [$-\w] then you'll see the error. https://3v4l.org/fk0Ij In PCRE2, > Perl treats a hyphen as a literal if it appears before or after a POSIX class (see below) or > before or after a > character type escape such as as \d or \H. However, unless the hyphen is the last character in > the class, Perl > outputs a warning in its warning mode, as this is most likely a user error. As PCRE2 has no > facility for warning, > an error is given in these cases. https://www.pcre.org/current/doc/html/pcre2pattern.html#SEC9 It's now an error to have it both before or after the hyphen. Previous Comments: ------------------------------------------------------------------------ [2018-04-05 16:48:55] cmb@php.net That's likely a behavioral difference between PCRE and PCRE2. ------------------------------------------------------------------------ [2018-04-05 15:18:11] andi at splitbrain dot org Description: ------------ In regular expressions an unescaped minus character (-) in character classes is usually used to declare a range. However when the range makes no sense, it is treated as a literal minus character. This seems still to be true for most occasions in 7.3-dev except for one special combination, where the minus sits between a shortcut character class and a dollar sign. Eg. /[\w-$]/. Previous PHP versions would treat this as word characters, minus and dollar. PHP 7.3-dev throws an error. Test script: --------------- <?php $tests = [ '/[\w-$]/', '/[\w-]/', '/[-\w]/', '/[$-]/', '/[-$]/', ]; echo PHP_VERSION; echo "\n"; foreach($tests as $test) { echo "$test\n"; preg_match($test,''); } Expected result: ---------------- 7.2.3 /[\w-$]/ /[\w-]/ /[-\w]/ /[$-]/ /[-$]/ Actual result: -------------- 7.3.0-dev /[\w-$]/ Warning: preg_match(): Compilation failed: invalid range in character class at offset 3 in /var/www/test.php on line 16 /[\w-]/ /[-\w]/ /[$-]/ /[-$]/ ------------------------------------------------------------------------ -- Edit this bug report at https://bugs.php.net/bug.php?id=76188&edit=1

« previous php.bugs (#214627) next »