This issue tracker has been migrated to GitHub, and is currently read-only.
For more information, see the GitHub FAQs in the Python's Developer Guide.

Author apolkosnik
Recipients NewerCookie, alanmcintyre, amaury.forgeotdarc, apolkosnik, chuck, georg.brandl, ronaldoussoren, serhiy.storchaka, terry.reedy
Date 2014-04-29.21:15:57
SpamBayes Score -1.0
Marked as misclassified Yes
Message-id <1398806157.76.0.00240578019325.issue6839@psf.upfronthosting.co.za>
In-reply-to
Content
Also, this behavior is present on all platforms and all versions of Python (zipfile Library), so maybe the headers should be adjusted there too.

I'm not saying that this is necessarily a big freaking hole, but by using this, one can prevent files from being extracted using this simple trick.
History
Date User Action Args
2014-04-29 21:15:57apolkosniksetrecipients: + apolkosnik, georg.brandl, terry.reedy, ronaldoussoren, amaury.forgeotdarc, alanmcintyre, NewerCookie, chuck, serhiy.storchaka
2014-04-29 21:15:57apolkosniksetmessageid: <1398806157.76.0.00240578019325.issue6839@psf.upfronthosting.co.za>
2014-04-29 21:15:57apolkosniklinkissue6839 messages
2014-04-29 21:15:57apolkosnikcreate