Skip to content

[3.11] gh-109858: Protect zipfile from "quoted-overlap" zipbomb (GH-110016)#113913

Merged
serhiy-storchaka merged 1 commit into
python:3.11from
miss-islington:backport-66363b9-3.11
Jan 11, 2024
Merged

[3.11] gh-109858: Protect zipfile from "quoted-overlap" zipbomb (GH-110016)#113913
serhiy-storchaka merged 1 commit into
python:3.11from
miss-islington:backport-66363b9-3.11

Conversation

@miss-islington

@miss-islington miss-islington commented Jan 10, 2024

Copy link
Copy Markdown
Contributor

Raise BadZipFile when try to read an entry that overlaps with other entry or
central directory.
(cherry picked from commit 66363b9)

Co-authored-by: Serhiy Storchaka storchaka@gmail.com

…nGH-110016)

Raise BadZipFile when try to read an entry that overlaps with other entry or
central directory.
(cherry picked from commit 66363b9)

Co-authored-by: Serhiy Storchaka <storchaka@gmail.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

type-security A security issue

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants