Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Because http protocols give you lots of extra chances to screw things up.

https://justi.cz/security/2019/01/22/apt-rce.html

> Unfortunately, the HTTP fetcher process URL-decodes the HTTP Location header and blindly appends it to the 103 Redirect response:



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: