Item13180: Configure won't run under jsonrpc if -T taint checking enabled.

pencil
Priority: Normal
Current State: Closed
Released In: n/a
Target Release:
Applies To: Extension
Component: Configure
Branches: master
Reported By: GeorgeClark
Waiting For:
Last Change By: CrawfordCurrie
  • The Taint errors have the stack stripped without any logging of where the actual problem is.
  • -set values are not untainted in Configure::Query

-- GeorgeClark - 26 Dec 2014

Also noticed that Save calls stripStackTrace, not stripStacktrace

-- GeorgeClark - 26 Dec 2014

Crawford, I added unconditional untainting of the configure variables. That needs review.

-- GeorgeClark - 26 Dec 2014

Done, and fixed Item13218

-- CrawfordCurrie - 20 Jan 2015

 

ItemTemplate edit

Summary Configure won't run under jsonrpc if -T taint checking enabled.
ReportedBy GeorgeClark
Codebase
SVN Range
AppliesTo Extension
Component Configure
Priority Normal
CurrentState Closed
WaitingFor
Checkins distro:85838875dcbc distro:b86df56dabec
ReleasedIn n/a
CheckinsOnBranches master
trunkCheckins
masterCheckins distro:85838875dcbc distro:b86df56dabec
ItemBranchCheckins
Release01x01Checkins
Topic revision: r3 - 20 Jan 2015, CrawfordCurrie
The copyright of the content on this website is held by the contributing authors, except where stated elsewhere. See Copyright Statement. Creative Commons License    Legal Imprint    Privacy Policy