mirror of
https://github.com/omar-polo/gmid.git
synced 2024-10-01 06:51:19 +02:00
9d092b607a
Some particularly crafted IRIs can cause a denial of service (DOS). IRIs which have a trailing `..' segment and resolve to a valid IRI (i.e. a .. that's not escaping the root directory) will make the server process loop forever. This is """just""" an DOS vulnerability, it doesn't expose anything sensitive or give an attacker anything else. |
||
---|---|---|
.. | ||
env | ||
err | ||
fill-file.c | ||
hello | ||
invalid | ||
iri_test.c | ||
Makefile | ||
max-length-reply | ||
puny-test.c | ||
runtime | ||
serve-bigfile | ||
sha | ||
slow | ||
valid.ext |