Skip to content

IP parsing security audit #40255

Open
Open
@miguelraz

Description

@miguelraz

npm was recently attacked by passing in octal numbers to their IVP4 spec, which could reroute local connections to exterior connections and vice versa.

This is known is security terms as "bad".

This issue is started as a way of keeping track of potential concerns in Julia and the package ecosystem.

cc @StefanKarpinski @cmcaine

Metadata

Metadata

Assignees

No one assigned

    Labels

    securitySystem security concerns and vulnerabilitiessockets

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions