Skip to content

Potential Vulnerability in Cloned Code#80

Open
ivanaclairineirsan wants to merge 1 commit intoTeX-Live:trunkfrom
ivanaclairineirsan:fix/CVE-2021-41099
Open

Potential Vulnerability in Cloned Code#80
ivanaclairineirsan wants to merge 1 commit intoTeX-Live:trunkfrom
ivanaclairineirsan:fix/CVE-2021-41099

Conversation

@ivanaclairineirsan
Copy link

This PR fixes a potential security vulnerability in texk/web2c/mfluadir/otfcc/dep/extern/sds.c

###Details:
Affected File: texk/web2c/mfluadir/otfcc/dep/extern/sds.c
Original Fix: redis/redis@c6ad876

###What this PR does:
This PR applies the same security patch that was applied to the original repository to eliminate the potential vulnerability in the cloned code.

###References:

@gucci-on-fleek
Copy link
Member

gucci-on-fleek commented Feb 25, 2026

Thanks for the PR. mflua isn't security-sensitive (since I can't really imagine a case where you'd run it on untrusted input), but this fix looks reasonable to me. I've forwarded it to the mflua maintainer, and him or I will get back to you if/when it's merged.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants