summary refs log tree commit diff stats
path: root/qobject/json-parser-int.h
diff options
context:
space:
mode:
authorMarkus Armbruster <armbru@redhat.com>2018-08-23 18:40:15 +0200
committerMarkus Armbruster <armbru@redhat.com>2018-08-24 20:26:37 +0200
commitda09cfbf9dcd07c48fe95bdfb2968305de9b9690 (patch)
tree97b894695b7170ca371fb2a3bd82eb7b65e34e34 /qobject/json-parser-int.h
parentdd98e8481992741a6b5ec0bdfcee05c1c8f602d6 (diff)
downloadfocaccia-qemu-da09cfbf9dcd07c48fe95bdfb2968305de9b9690.tar.gz
focaccia-qemu-da09cfbf9dcd07c48fe95bdfb2968305de9b9690.zip
json: Enforce token count and size limits more tightly
Token count and size limits exist to guard against excessive heap
usage.  We check them only after we created the token on the heap.
That's assigning a cowboy to the barn to lasso the horse after it has
bolted.  Close the barn door instead: check before we create the
token.

Signed-off-by: Markus Armbruster <armbru@redhat.com>
Reviewed-by: Eric Blake <eblake@redhat.com>
Message-Id: <20180823164025.12553-49-armbru@redhat.com>
Diffstat (limited to 'qobject/json-parser-int.h')
0 files changed, 0 insertions, 0 deletions