For almost a year, my jailexec connection plugin let a compromised FreeBSD jail redirect a root-owned write onto the jail host. The input validation was fine. The problem was on which side of the j...
1 comment
MiroslavPokorny3 days ago
Said it before but will say it again, if you are using REGEX for validation you can nearly always be sure this shortcut is broken.
Regexp are nearly always broken for validation because they dont capture the context of the operation, in this case the text is checked as text and ignores other aspects of a path such as links etc.
Read the full thread on Hacker News →
Related stories
- Hacker News · 1 points · 6 days ago
- TCP SACK PANIC - Kernel vulnerabilities - CVE-2019-11477, CVE-2019-11478 & CVE-2019-11479access.redhat.comLobsters · 1 points · over 7 years ago
- Hacker News · 1 points · 4 days ago
- Hacker News · 1 points · about 14 hours ago
- Citrix NetScaler Remote Code Executionsupport.citrix.comHacker News · 2 points · 3 days ago
- WireGuard FreeBSD VNET Jaileldapper.wordpress.comLobsters · 5 points · over 2 years ago