Last modified: 2014-02-08 16:19:18 UTC

Wikimedia Bugzilla is closed!

Wikimedia migrated from Bugzilla to Phabricator. Bug reports are handled in Wikimedia Phabricator.
This static website is read-only and for historical purposes. It is not possible to log in and except for displaying bug reports and their history, links might be broken. See T56624, the corresponding Phabricator task for complete and up-to-date bug report information.
Bug 54624 - Translation of 'lbrack' command creates small security issue
Translation of 'lbrack' command creates small security issue
Status: RESOLVED FIXED
Product: MediaWiki extensions
Classification: Unclassified
Math (Other open bugs)
unspecified
All All
: Normal trivial (vote)
: ---
Assigned To: Nobody - You can work on this!
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2013-09-26 07:32 UTC by physikerwelt
Modified: 2014-02-08 16:19 UTC (History)
8 users (show)

See Also:
Web browser: ---
Mobile Platform: ---
Assignee Huggle Beta Tester: ---


Attachments

Description physikerwelt 2013-09-26 07:32:11 UTC
see https://de.wikipedia.org/wiki/Benutzer:Physikerwelt#MOST_IMPORTANT_TEXVC_BUG
texvc translates
\lbrack->[

I guess a side effect is that it creates a tex file on the server that looks like
preamble
$$
[ user-input
$$
\end{document}
... might be a minor security issue.

I will fix that in the texvc grammar
Comment 1 Gerrit Notification Bot 2013-10-20 18:58:42 UTC
Change 90748 had a related patch set uploaded by Physikerwelt:
Breakdown of texvc

https://gerrit.wikimedia.org/r/90748
Comment 2 Gerrit Notification Bot 2013-12-17 08:12:31 UTC
Change 90748 merged by Physikerwelt:
Breakdown of texvc

https://gerrit.wikimedia.org/r/90748

Note You need to log in before you can comment on or make changes to this bug.


Navigation
Links