[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: ANNOUNCE Xmlm 1.0.2



Nico Golde a écrit :
> Did someone already evaluate if this results only in a crash or can also 
> result in code execution? if it's only a DoS I think it shouldn't be a big 
> deal.

It fixes only a possible DoS.

FTR, this version basically replaces uses of List.rev and List.map with
List.rev_map which is tail-recursive. It breaks the ABI on native
architectures (but not on bytecode).


Cheers,

-- 
Stéphane


Reply to: