[diffoscope] 03/03: comparators.squashfs: Extract archive in one go rather than per-file, speeding up ISO comparison by ~10x

Ximin Luo infinity0 at debian.org
Mon Mar 20 16:01:00 CET 2017


Chris Lamb:
> This is an automated email from the git hooks/post-receive script.
> 
> lamby pushed a commit to branch experimental
> in repository diffoscope.
> 
> commit 52b70b269e4faa31dba92799f57cc135dcb60832
> Author: Chris Lamb <lamby at debian.org>
> Date:   Tue Mar 14 18:21:52 2017 +0100
> 
>     comparators.squashfs: Extract archive in one go rather than per-file, speeding up ISO comparison by ~10x
>     
> [..]

Hi Chris, do you know if it is possible for squashfs images to contain tricky paths like /evil/path or ../../../../evil/path that might cause a security issue here, similar to #854723 ?

X

-- 
GPG: ed25519/56034877E1F87C35
GPG: rsa4096/1318EFAC5FBBDBCE
https://github.com/infinity0/pubkeys.git


More information about the diffoscope mailing list