Re: svn commit: r1476366 - /subversion/trunk/subversion/svn/props.c
From: Julian Foad <julianfoad_at_btopenworld.com>
Date: Sat, 27 Apr 2013 17:25:36 +0100 (BST)
Daniel Shahaf wrote:
>> URL: http://svn.apache.org/r1476366
I couldn't find a way to trigger it, since putting '%' in a property name leads to the property name being rejected as invalid earlier on.
So I don't think there is an actual security risk here. We might want to backport in order to avoid the compiler warning and avoid fear, uncertainty and doubt when people see this.
I'll nominate it.
- Julian
>> - return svn_error_createf(
|
This is an archived mail posted to the Subversion Dev mailing list.
This site is subject to the Apache Privacy Policy and the Apache Public Forum Archive Policy.