Re: Subversion security needs to improve.
From: Mark Benedetto King <mbk_at_lowlatency.com>
Date: 2004-10-21 00:44:33 CEST
On Wed, Oct 20, 2004 at 02:28:45PM -0700, Ben Reser wrote:
As an aside:
IIRC, the scanf vulnerability was found by a security researcher who
In many projects, this would have generated a huge list of potential
In our case, it generated exactly 2 matches. One of them was
We were intentially not using unsafe functions like scanf. This
It is unfortunate that such a vulnerability existed, but I think
--ben
---------------------------------------------------------------------
|
This is an archived mail posted to the Subversion Dev mailing list.
This site is subject to the Apache Privacy Policy and the Apache Public Forum Archive Policy.