[Expat-discuss] A way to handle malicious XML with Expat / was Re: Handling malicious XML with Expat - what options do I have?

Sebastian Pipping webmaster at hartwork.org
Tue Sep 16 04:45:25 CEST 2008


Input/output ratio limits were a bad idea: To apply it
properly one would have to process the whole file first...

So here is v3:
- input/output ratio limit removed
- entity lookup depth limit added
- mem leaks fixed

I now understand why finding limit defaults is so
hard if even possible.



Sebastian
-------------- next part --------------
An embedded and charset-unspecified text was scrubbed...
Name: demo_3_0.cpp
URL: <http://mail.libexpat.org/pipermail/expat-discuss/attachments/20080916/8b03a1f9/attachment.txt>


More information about the Expat-discuss mailing list