Comment 41 for bug 1545092

Revision history for this message
Brian Rosmaita (brian-rosmaita) wrote :

I don't know whether this is worth mentioning or not, you can decide based on your usual practice.

The attack is escalated by creating images that have lots of properties or image members. These are the default settings:

allow_additional_image_properties = true
image_property_quota = 128
image_member_quota = 128
image_tag_quota = 128
image_location_quota = 10