Pavel JanĂk [ARCHIVE] on Nostr: đź“… Original date posted:2015-12-02 đź“ť Original message:> On 02 Dec 2015, at ...
đź“… Original date posted:2015-12-02
đź“ť Original message:> On 02 Dec 2015, at 00:44, Simon Liu <simon at bitcartel.com> wrote:
>
> Hi Matt/Pavel,
>
> Why is it scary/undesirable? Thanks.
Select your preferable compression library and google for it with +CVE.
E.g. in zlib:
http://www.cvedetails.com/vulnerability-list/vendor_id-72/product_id-1820/GNU-Zlib.html…allows remote attackers to cause a denial of service (crash) via a crafted compressed stream…
…allows remote attackers to cause a denial of service (application crash)…
etc.
Do you want to expose such lib to the potential attacker?
--
Pavel JanĂk
Published at
2023-06-07 17:45:28Event JSON
{
"id": "967b741350e5dff0b5429f82c16819ed64e7926b66891f79c55be083ce58e853",
"pubkey": "d2fc92ecd9d7550ff504a6cac34209a57de565581b702092d5c17d367f2bcbae",
"created_at": 1686159928,
"kind": 1,
"tags": [
[
"e",
"66e2fed0b01e52e71a1dd6b42fe6a9fda1f0a599c3d79a1ed608f15fbb8c1ad3",
"",
"root"
],
[
"e",
"3e1a022aa61bd65d5580177ed47cd9e33c9c3beb73f5f0ef85ec6d9206f0d3f2",
"",
"reply"
],
[
"p",
"a384795310cea1937dda4d01ee8f14ca734b9a7ab60c62114a5656706e15e47f"
]
],
"content": "đź“… Original date posted:2015-12-02\nđź“ť Original message:\u003e On 02 Dec 2015, at 00:44, Simon Liu \u003csimon at bitcartel.com\u003e wrote:\n\u003e \n\u003e Hi Matt/Pavel,\n\u003e \n\u003e Why is it scary/undesirable? Thanks.\n\nSelect your preferable compression library and google for it with +CVE.\n\nE.g. in zlib:\n\nhttp://www.cvedetails.com/vulnerability-list/vendor_id-72/product_id-1820/GNU-Zlib.html\n\n…allows remote attackers to cause a denial of service (crash) via a crafted compressed stream…\n…allows remote attackers to cause a denial of service (application crash)…\netc.\n\nDo you want to expose such lib to the potential attacker?\n-- \nPavel JanĂk",
"sig": "9550d565394ed82fe0f939dddc98eb8b50856841e55dc61ae1561bedff1875b4bcad186845de7659e9f87405b40d5f02534e72f6ea7ad2b109c3cc020b872f23"
}