Skip to content

Tarbomb in release src tarball file #19066

Closed
@eleksir

Description

@eleksir

Gitea Version

1.16.3

Git Version

N/A

Operating System

N/A

How are you running Gitea?

tar xf gitea-src-1.16.3.tar.gz

Database

No response

Can you reproduce the bug on the Gitea demo site?

No

Log Gist

N/A

Description

Gitea official src, gitea-src-1.16.3.tar.gz, (from releases page at github, particulary at release of 1.16.3) contains tarbomb. Such behavior is considered bad etiquette on the part of the archive's creator.

Expected behavior is (after untarring) to find this pile of files in subdir named gitea-src-1.16.3 or even better in subdir named gitea-1.16.3.

Screenshots

N/A

Metadata

Metadata

Assignees

No one assigned

    Labels

    good first issueLikely to be an easy fixhacktoberfestissue/confirmedIssue has been reviewed and confirmed to be present or accepted to be implementedtopic/distributionThis PR changes something about the packaging of Gitea

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions