mirror of
https://github.com/neovim/neovim.git
synced 2026-01-07 03:48:02 +10:00
vim-patch:9.1.1198: [security]: potential data loss with zip.vim (#32867)
Problem: [security]: potential data loss with zip.vim and special
crafted zip files (RyotaK)
Solution: use glob '[-]' to protect filenames starting with '-'
Github Advisory:
https://github.com/vim/vim/security/advisories/GHSA-693p-m996-3rmf
f209dcd3de
Co-authored-by: Christian Brabandt <cb@256bit.org>
This commit is contained in:
BIN
test/old/testdir/samples/poc.zip
Normal file
BIN
test/old/testdir/samples/poc.zip
Normal file
Binary file not shown.
Reference in New Issue
Block a user