git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: [PATCH 1/5] Library code for user-relative paths, take three.

From
Andreas Ericsson <ae@op5.se>
Date
Nov 18, 2005, 22:49 UTC
Message-ID
<437E5A90.3070405@op5.se>
In-Reply-To
<437E3A9B.1070801@zytor.com>
H. Peter Anvin wrote:
> The whole point with --strict is that it shouldn't DWIM.  DWIMming is 
> *NOT* safe if the data has previously passed through a security screen.
> 

But it hasn't at this point. The security scan is done afterwards, when the canonical path is compared against the whitelist which, in strict mode, only matches if it matches exactly.

But anyways, how about doing
	enter_repo(path, 2)
from the daemon to make enter_repo() do the chdir(".git")?
-- 
Andreas Ericsson                   andreas.ericsson@op5.se
OP5 AB                             www.op5.se
Tel: +46 8-230225                  Fax: +46 8-230231
Previous: H. Peter AnvinNext: Andreas Ericsson
Message 6 of 7 in “Library code for user-relative paths, take three.”
  1. 1/5 Library code for user-relative paths, take three.Andreas Ericsson, Nov 17, 2005
  2. Junio C HamanoNov 17, 2005
  3. Andreas EricssonNov 18, 2005
  4. Andreas EricssonNov 18, 2005
  5. H. Peter AnvinNov 18, 2005
  6. Andreas EricssonNov 18, 2005
  7. Andreas EricssonNov 18, 2005

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.