https://bugzilla.wikimedia.org/show_bug.cgi?id=18684


Chad H. <[email protected]> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
Attachment #6090 is|0                           |1
           obsolete|                            |




--- Comment #4 from Chad H. <[email protected]>  2009-07-02 02:30:53 UTC 
---
Created an attachment (id=6291)
 --> (https://bugzilla.wikimedia.org/attachment.cgi?id=6291)
Patch of above file to trunk

Here's a diff of patching the above file into trunk. That being said, I won't
commit it.

It's a nasty hack with a very easily exploitable vector: rename any file to one
of the MSFT files, and you skip all of Tim's content-detection work. 


-- 
Configure bugmail: https://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.
You are on the CC list for the bug.

_______________________________________________
Wikibugs-l mailing list
[email protected]
https://lists.wikimedia.org/mailman/listinfo/wikibugs-l

Reply via email to