busybox/archival
Denys Vlasenko bc9bbeb2b8 libarchive: do not extract unsafe symlinks unless $EXTRACT_UNSAFE_SYMLINKS=1
function                                             old     new   delta
unsafe_symlink_target                                  -     147    +147
unzip_main                                          2711    2732     +21
copy_file                                           1657    1678     +21
tar_main                                             999     971     -28
data_extract_all                                    1038     984     -54
------------------------------------------------------------------------------
(add/remove: 2/0 grow/shrink: 2/2 up/down: 189/-82)           Total: 107 bytes

Signed-off-by: Denys Vlasenko <vda.linux@googlemail.com>
2017-08-10 11:52:42 +02:00
..
libarchive libarchive: do not extract unsafe symlinks unless $EXTRACT_UNSAFE_SYMLINKS=1 2017-08-10 11:52:42 +02:00
ar.c getopt32: remove opt_complementary 2017-08-08 21:55:02 +02:00
bbunzip_test2.sh add tests for gunzip 2007-10-05 15:27:03 +00:00
bbunzip_test3.sh add tests for gunzip 2007-10-05 15:27:03 +00:00
bbunzip_test.sh add tests for gunzip 2007-10-05 15:27:03 +00:00
bbunzip.c getopt32: remove applet_long_options 2017-08-08 17:09:40 +02:00
bzip2.c getopt32: remove opt_complementary 2017-08-08 21:55:02 +02:00
Config.src config: deindent all help texts 2017-07-21 09:50:55 +02:00
cpio.c getopt32: remove applet_long_options 2017-08-08 17:09:40 +02:00
dpkg_deb.c getopt32: remove opt_complementary 2017-08-08 21:55:02 +02:00
dpkg.c getopt32: remove applet_long_options 2017-08-08 17:09:40 +02:00
gzip.c getopt32: remove applet_long_options 2017-08-08 17:09:40 +02:00
Kbuild.src cpio: implement -R/--owner 2015-10-16 17:24:46 +02:00
lzop.c getopt32: remove opt_complementary 2017-08-08 21:55:02 +02:00
rpm.c rpm2cpio: handle LZMA compressed rpms. closes 10166 2017-08-10 10:36:37 +02:00
rpm.h *: make GNU licensing statement forms more regular 2010-08-16 20:14:46 +02:00
tar_symlink_attack tar: postpone creation of symlinks with "suspicious" targets. Closes 8411 2017-07-24 17:20:13 +02:00
tar.c libarchive: do not extract unsafe symlinks unless $EXTRACT_UNSAFE_SYMLINKS=1 2017-08-10 11:52:42 +02:00
unzip.c libarchive: do not extract unsafe symlinks unless $EXTRACT_UNSAFE_SYMLINKS=1 2017-08-10 11:52:42 +02:00