• Tim Peters's avatar
    SF bug 1003471: Python 1.5.2 security vulnerability · 8484fbf0
    Tim Peters yazdı
    This was probably fixed in rev 1.32 of getpath.c, but there are so
    many paths thru the code that invoke joinpath() it's not at all
    obvious that it *is* fixed.  It doesn't help confidence that a crucial
    precondition for calling joinpath() was neither documented nor verified.
    It is now, and joinpath() will barf with a fatal error now rather than
    overrun the buffer, if the precondition isn't met.
    
    Note that this patch only changes the Windows flavor.  I attached another
    patch to the bug report for the POSIX flavor (which I can't test
    conveniently).
    8484fbf0
Adı
Son kayıt (commit)
Son güncelleme
..
VC6 Loading commit data...
bdist_wininst Loading commit data...
example_nt Loading commit data...
os2emx Loading commit data...
os2vacpp Loading commit data...
.cvsignore Loading commit data...
WinMain.c Loading commit data...
_winreg.c Loading commit data...
config.c Loading commit data...
dl_nt.c Loading commit data...
dllbase_nt.txt Loading commit data...
frozen_dllmain.c Loading commit data...
getpathp.c Loading commit data...
import_nt.c Loading commit data...
make_versioninfo.c Loading commit data...
msvcrtmodule.c Loading commit data...
py.ico Loading commit data...
pyc.ico Loading commit data...
pycon.ico Loading commit data...
pyconfig.h Loading commit data...
python.mk Loading commit data...
python_exe.rc Loading commit data...
python_nt.rc Loading commit data...
readme.txt Loading commit data...
testpy.py Loading commit data...
w9xpopen.c Loading commit data...
winsound.c Loading commit data...