User CGIs shouldn't able to crash IVLE by faking exception headers
Bug #531122 reported by
William Grant
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
IVLE |
Fix Released
|
Medium
|
William Grant |
Bug Description
User CGIs can fake IVLE exceptions or cause IVLE to really crash by adding fake X-IVLE-Error-* headers. We should disable detection of those in 'gentle' mode, which is used to make user CGI errors nice.
Related branches
To post a comment you must log in.
Fixed in trunk r1780.