[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-18 Thread ASF subversion and git services (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16746305#comment-16746305
 ] 

ASF subversion and git services commented on KARAF-6090:


Commit ac6874fc66e9111d5c9c06e04c37f75c509aeb8a in karaf's branch 
refs/heads/master from Colm O hEigeartaigh
[ https://gitbox.apache.org/repos/asf?p=karaf.git;h=ac6874f ]

KARAF-6090 - Also check the URL encoded form of ".."


> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-18 Thread ASF subversion and git services (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16746306#comment-16746306
 ] 

ASF subversion and git services commented on KARAF-6090:


Commit b833eab2bc65cf100ddd49b34311be330b350550 in karaf's branch 
refs/heads/master from Jean-Baptiste Onofré
[ https://gitbox.apache.org/repos/asf?p=karaf.git;h=b833eab ]

Merge pull request #730 from coheigea/KARAF-6090

[KARAF-6090] Also check the URL encoded form of ".."

> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-18 Thread ASF GitHub Bot (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16746304#comment-16746304
 ] 

ASF GitHub Bot commented on KARAF-6090:
---

jbonofre commented on pull request #730: KARAF-6090 - Also check the URL 
encoded form of ".."
URL: https://github.com/apache/karaf/pull/730
 
 
   
 

This is an automated message from the Apache Git Service.
To respond to the message, please log on GitHub and use the
URL above to go to the specific comment.
 
For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-18 Thread ASF subversion and git services (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16746307#comment-16746307
 ] 

ASF subversion and git services commented on KARAF-6090:


Commit b833eab2bc65cf100ddd49b34311be330b350550 in karaf's branch 
refs/heads/master from Jean-Baptiste Onofré
[ https://gitbox.apache.org/repos/asf?p=karaf.git;h=b833eab ]

Merge pull request #730 from coheigea/KARAF-6090

[KARAF-6090] Also check the URL encoded form of ".."

> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-18 Thread ASF GitHub Bot (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16746121#comment-16746121
 ] 

ASF GitHub Bot commented on KARAF-6090:
---

coheigea commented on pull request #730: KARAF-6090 - Also check the URL 
encoded form of ".."
URL: https://github.com/apache/karaf/pull/730
 
 
   
 

This is an automated message from the Apache Git Service.
To respond to the message, please log on GitHub and use the
URL above to go to the specific comment.
 
For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-15 Thread ASF subversion and git services (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16742962#comment-16742962
 ] 

ASF subversion and git services commented on KARAF-6090:


Commit e36a7a66fa08eb5eb253b2b0cec262ffbdef0721 in karaf's branch 
refs/heads/karaf-4.1.x from Jean-Baptiste Onofré
[ https://gitbox.apache.org/repos/asf?p=karaf.git;h=e36a7a6 ]

[KARAF-6090] kar extract ignores path containing .. relative


> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.0.11, 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-15 Thread ASF subversion and git services (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16742922#comment-16742922
 ] 

ASF subversion and git services commented on KARAF-6090:


Commit fef9a618f11a670dc040d903a4b0f9bbc9f3e9c3 in karaf's branch 
refs/heads/master from Jean-Baptiste Onofré
[ https://gitbox.apache.org/repos/asf?p=karaf.git;h=fef9a61 ]

[KARAF-6090] kar extract ignores path containing .. relative


> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.0.11, 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-15 Thread ASF GitHub Bot (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16742921#comment-16742921
 ] 

ASF GitHub Bot commented on KARAF-6090:
---

jbonofre commented on pull request #717: [KARAF-6090] kar extract ignores path 
containing .. relative
URL: https://github.com/apache/karaf/pull/717
 
 
   
 

This is an automated message from the Apache Git Service.
To respond to the message, please log on GitHub and use the
URL above to go to the specific comment.
 
For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.0.11, 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-15 Thread ASF subversion and git services (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16742925#comment-16742925
 ] 

ASF subversion and git services commented on KARAF-6090:


Commit c978390a1c8e54ff5525357f2667e588e4fe7dd2 in karaf's branch 
refs/heads/master from Jean-Baptiste Onofré
[ https://gitbox.apache.org/repos/asf?p=karaf.git;h=c978390 ]

Merge pull request #717 from jbonofre/KARAF-6090

[KARAF-6090] kar extract ignores path containing .. relative

> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.0.11, 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-15 Thread ASF subversion and git services (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16742923#comment-16742923
 ] 

ASF subversion and git services commented on KARAF-6090:


Commit c978390a1c8e54ff5525357f2667e588e4fe7dd2 in karaf's branch 
refs/heads/master from Jean-Baptiste Onofré
[ https://gitbox.apache.org/repos/asf?p=karaf.git;h=c978390 ]

Merge pull request #717 from jbonofre/KARAF-6090

[KARAF-6090] kar extract ignores path containing .. relative

> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.0.11, 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-14 Thread ASF subversion and git services (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16742300#comment-16742300
 ] 

ASF subversion and git services commented on KARAF-6090:


Commit bbfec622a44937e9e19db0825f60aa7813c50cb1 in karaf-cave's branch 
refs/heads/master from Jean-Baptiste Onofré
[ https://gitbox.apache.org/repos/asf?p=karaf-cave.git;h=bbfec62 ]

Merge pull request #20 from jbonofre/KARAF-6090

[KARAF-6090] explode operation ignores path containing .. relative

> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-14 Thread ASF subversion and git services (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16742301#comment-16742301
 ] 

ASF subversion and git services commented on KARAF-6090:


Commit bbfec622a44937e9e19db0825f60aa7813c50cb1 in karaf-cave's branch 
refs/heads/master from Jean-Baptiste Onofré
[ https://gitbox.apache.org/repos/asf?p=karaf-cave.git;h=bbfec62 ]

Merge pull request #20 from jbonofre/KARAF-6090

[KARAF-6090] explode operation ignores path containing .. relative

> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-14 Thread ASF GitHub Bot (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16742298#comment-16742298
 ] 

ASF GitHub Bot commented on KARAF-6090:
---

jbonofre commented on pull request #20: [KARAF-6090] explode operation ignores 
path containing .. relative
URL: https://github.com/apache/karaf-cave/pull/20
 
 
   
 

This is an automated message from the Apache Git Service.
To respond to the message, please log on GitHub and use the
URL above to go to the specific comment.
 
For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-14 Thread ASF subversion and git services (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16742299#comment-16742299
 ] 

ASF subversion and git services commented on KARAF-6090:


Commit addd0e4a9269b99c0b1211694aef7a72c772afcb in karaf-cave's branch 
refs/heads/master from Jean-Baptiste Onofré
[ https://gitbox.apache.org/repos/asf?p=karaf-cave.git;h=addd0e4 ]

[KARAF-6090] explode operation ignores path containing .. relative


> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-14 Thread ASF GitHub Bot (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16742078#comment-16742078
 ] 

ASF GitHub Bot commented on KARAF-6090:
---

jbonofre commented on pull request #20: [KARAF-6090] explode operation ignores 
path containing .. relative
URL: https://github.com/apache/karaf-cave/pull/20
 
 
   
 

This is an automated message from the Apache Git Service.
To respond to the message, please log on GitHub and use the
URL above to go to the specific comment.
 
For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)


[jira] [Commented] (KARAF-6090) kar extract should ignore path containing .. relative path

2019-01-14 Thread ASF GitHub Bot (JIRA)


[ 
https://issues.apache.org/jira/browse/KARAF-6090?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16742042#comment-16742042
 ] 

ASF GitHub Bot commented on KARAF-6090:
---

jbonofre commented on pull request #717: [KARAF-6090] kar extract ignores path 
containing .. relative
URL: https://github.com/apache/karaf/pull/717
 
 
   
 

This is an automated message from the Apache Git Service.
To respond to the message, please log on GitHub and use the
URL above to go to the specific comment.
 
For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


> kar extract should ignore path containing .. relative path
> --
>
> Key: KARAF-6090
> URL: https://issues.apache.org/jira/browse/KARAF-6090
> Project: Karaf
>  Issue Type: Improvement
>  Components: cave, karaf
>Reporter: Jean-Baptiste Onofré
>Assignee: Jean-Baptiste Onofré
>Priority: Major
> Fix For: 4.1.8, 4.2.3, cave-4.1.2
>
>
> For security reason, kar extract (or explode in Cave deployer) should ignore 
> inner path containing {{..}} relative.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)