Possible hole in the resource uploader

Bug #336973 reported by Luke-Jr
2
Affects Status Importance Assigned to Milestone
Armagetron Advanced
New
Undecided
Unassigned

Bug Description

XML allows DTDs to be defined inline a XML document. Currently the resource uploader rejects unsupported maps by running a DTD validator on them, assuming the DTD must already be in the repository for pass. However, an inline DTD could bypass this check.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.