Skip to content

http connection: perform sanitisation on the provided filename

Felix Paul Kühne requested to merge fkuehne/vlc-ios:http-fix into master

This prevents potential path traversal by malicious actors and a denial-of-service attack as well as unnoticed arbitrary data uploads.

Courtesy Allar Lauk of TalTech University (Estonia)

Merge request reports

Loading