git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: [PATCH 1/2] http: Fix handling of missing CURLPROTO_*

From
Tom G. Christensen <tgc@jupiterrise.com>
Date
Aug 12, 2017, 09:04 UTC
Message-ID
<91420770-f02e-7685-9c0e-f840633f01d5@jupiterrise.com>
In-Reply-To
<xmqqo9rly6dx.fsf@gitster.mtv.corp.google.com>
On 12/08/17 02:30, Junio C Hamano wrote:
> This may make the code to _compile_, but is it sensible to let the
> code build and be used by the end users without the "these protocols
> are safe" filter, I wonder?
> 

Git will display a warning at runtime if this is not available but perhaps this warning could be worded more strongly and/or make reference to CVE-2009-0037.

-tgc
Previous: Junio C HamanoNext: Jeff King
Message 5 of 11 in “http: handle curl with vendor backports”
  1. 0/2 http: handle curl with vendor backportsTom G. Christensen, Aug 11, 2017
  2. 2/2 http: use a feature check to enable GSSAPI delegation controlTom G. Christensen, Aug 11, 2017
  3. 1/2 http: Fix handling of missing CURLPROTO_*Tom G. Christensen, Aug 11, 2017
  4. Junio C HamanoAug 12, 2017
  5. Tom G. ChristensenAug 12, 2017
  6. Jeff KingAug 20, 2017
  7. Junio C HamanoAug 11, 2017
  8. Tom G. ChristensenAug 12, 2017
  9. Jeff KingAug 20, 2017
  10. Junio C HamanoAug 20, 2017
  11. Jeff KingAug 23, 2017

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.