diff options
author | 2007-10-10 13:23:40 +0000 | |
---|---|---|
committer | 2007-10-10 13:23:40 +0000 | |
commit | 243d9a3d16f7fec314332ea188b9ec21fe3ae663 (patch) | |
tree | 7438258df93d875babcb2235226373e81ce5966f /sys/kern/kern_proc.c | |
parent | Fix some obviously bogus code in vge_newbuf(). Should fix PR 5582. (diff) | |
download | wireguard-openbsd-243d9a3d16f7fec314332ea188b9ec21fe3ae663.tar.xz wireguard-openbsd-243d9a3d16f7fec314332ea188b9ec21fe3ae663.zip |
Limit the allowed characters in a request to [a-zA-Z0-9-_.:/= ] everything
else will cause an "invalid character in input" error.
Fixes xss issue noticed by Anton Karpov.
OK henning@, sthen@
Diffstat (limited to 'sys/kern/kern_proc.c')
0 files changed, 0 insertions, 0 deletions