[FFmpeg-devel] [PATCH] [fateserver] Cleanup and security strengthening

Nicolas George george at nsup.org
Sun Aug 8 20:21:55 EEST 2021


Hi.

Here is a patch series for fateserver, to fix warnings and enable Perl's
taint checks, thus protecting against a whole class of security issues.

There would be more work to make this really clean, but I need to wait
for my ISP to fix its crap before I can do it comfortably. If it looks
to work correctly on the real or beta server and it is confirmed that
the recent issue is avoided, please feel free to apply without waiting
for me.

Regards,

-- 
  Nicolas George
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0001-FATE-cosmetic-reorder-EXPORT.patch
Type: text/x-diff
Size: 1004 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20210808/533828d9/attachment.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0002-.cgi-hardcode-Perl-library-path.patch
Type: text/x-diff
Size: 1403 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20210808/533828d9/attachment-0001.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0003-index-remove-uri.patch
Type: text/x-diff
Size: 1853 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20210808/533828d9/attachment-0002.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0004-FATE-add-functions-to-validate-parameters.patch
Type: text/x-diff
Size: 1774 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20210808/533828d9/attachment-0003.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0005-all-uniformize-compression-handling.patch
Type: text/x-diff
Size: 3327 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20210808/533828d9/attachment-0004.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0006-history-validate-parameters.patch
Type: text/x-diff
Size: 710 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20210808/533828d9/attachment-0005.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0007-report-validate-parameters.patch
Type: text/x-diff
Size: 798 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20210808/533828d9/attachment-0006.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0008-log-validate-parameters.patch
Type: text/x-diff
Size: 1017 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20210808/533828d9/attachment-0007.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0009-index-validate-parameters.patch
Type: text/x-diff
Size: 1039 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20210808/533828d9/attachment-0008.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0010-.cgi-enable-taint-checks.patch
Type: text/x-diff
Size: 1526 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20210808/533828d9/attachment-0009.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0011-index-force-scalar-context-for-param-query.patch
Type: text/x-diff
Size: 994 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20210808/533828d9/attachment-0010.patch>


More information about the ffmpeg-devel mailing list