[New-bugs-announce] [issue46793] expose expat XML billion laughs attack mitigation APIs

Gregory P. Smith report at bugs.python.org
Fri Feb 18 16:27:31 EST 2022


New submission from Gregory P. Smith <greg at krypto.org>:

Quoting from https://github.com/python/cpython/pull/31397#issuecomment-1044796561

"""
XML_SetBillionLaughsAttackProtectionActivationThreshold

XML_SetBillionLaughsAttackProtectionMaximumAmplification

I still hope that someone can make those two^^ accessible (with additional glue code) to the user on pyexpat level in CPython.
""" - Sebastian Pipping @hartwork

----------
messages: 413513
nosy: gregory.p.smith
priority: normal
severity: normal
stage: needs patch
status: open
title: expose expat XML billion laughs attack mitigation APIs
type: enhancement
versions: Python 3.11

_______________________________________
Python tracker <report at bugs.python.org>
<https://bugs.python.org/issue46793>
_______________________________________


More information about the New-bugs-announce mailing list