Skip to content

Guard against excessive collection sizes#455

Merged
neuecc merged 1 commit intoMessagePack-CSharp:masterfrom
AArnott:fix452
Jun 10, 2019
Merged

Guard against excessive collection sizes#455
neuecc merged 1 commit intoMessagePack-CSharp:masterfrom
AArnott:fix452

Conversation

@AArnott
Copy link
Collaborator

@AArnott AArnott commented Jun 3, 2019

Fixes #452

@AArnott AArnott added this to the v2.0 milestone Jun 3, 2019
@AArnott AArnott requested a review from neuecc June 3, 2019 02:41
@AArnott AArnott self-assigned this Jun 3, 2019
Copy link
Member

@neuecc neuecc left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks, OK.
(Note: CBOR(binary-format similar as MessagePack)'s spec mentions about this security https://tools.ietf.org/html/rfc7049#section-8 )

@neuecc neuecc merged commit 0a344fa into MessagePack-CSharp:master Jun 10, 2019
@AArnott AArnott deleted the fix452 branch June 10, 2019 12:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Apply array allocation limit

2 participants