Hi,

..is defusedxml useful in FG?  Provides another way to 
protect memory, summary of wishlist bug #705691:
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=705691
Package: wnpp
Severity: wishlist
Owner: Luke Faraone <lfara...@debian.org>

* Package name    : defusedxml
  Version         : 0.4.1
  Upstream Author : Christian Heimes <christ...@python.org>
* URL             : https://pypi.python.org/pypi/defusedxml
* License         : Python
  Programming Lang: Python
  Description     : XML bomb protection for Python stdlib modules

The results of an attack on a vulnerable XML library can be fairly
dramatic. With just a few hundred bytes of XML data an attacker can
occupy several gigabytes of memory within seconds. An attacker can also
keep CPUs busy for a long time with a small to medium size request.

This library allows for XML to be parsed in a manner that avoids these
pitfalls.

-- 
..med vennlig hilsen = with Kind Regards from Arnt Karlsen
...with a number of polar bear hunters in his ancestry...
  Scenarios always come in sets of three: 
  best case, worst case, and just in case.

------------------------------------------------------------------------------
Precog is a next-generation analytics platform capable of advanced
analytics on semi-structured data. The platform includes APIs for building
apps and a phenomenal toolset for data science. Developers can use
our toolset for easy data analysis & visualization. Get a free account!
http://www2.precog.com/precogplatform/slashdotnewsletter
_______________________________________________
Flightgear-devel mailing list
Flightgear-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/flightgear-devel

Reply via email to