Mangle the format?

Bo Thorsen bo at thorsen-consulting.dk
Fri Oct 29 15:09:58 CEST 2004


On Friday 29 October 2004 13:04, Reinhold Kainhofer wrote:
> On Friday 29 October 2004 12:47, Bernhard Reiter wrote:
> > The recent HTML mangeling tests
> > that turned up bugs in basically all webbrowser's html parsing
> > gave me an idea.
> >
> > What if we make a mangeling script to test the Kolab resistance
> > against bad kolab formats?
> >
> > We could the following mangleme port to python
> > as a basis for thus a script:
> > http://felinemenace.org/~nd/htmler.py
> >
> > Anybody feels like writing one?
>
> Although off-topic here, we could certainly need such a script for bad
> iCalendar files. I know a few examples of (valid) iCalendar files,
> which crash libical. Thinking of what bad iCalendar files might do to
> libical gives me the shiver ;-)

I'm normally religious about always adding regression test suites, so I 
can only agree to this :-)

And with shared folders, it's pretty easy for someone to store an odd iCal 
or XML file in there - but you can only do that if you have write access 
to the folders. I would agree with David that there are easier ways to 
DOS attack Kontact.

Bo.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
URL: <http://lists.kolab.org/pipermail/format/attachments/20041029/f5051f22/attachment.sig>


More information about the format mailing list