diff options
author | Reid Rankin <reidrankin@gmail.com> | 2020-01-23 17:07:21 +0000 |
---|---|---|
committer | Timo Teräs <timo.teras@iki.fi> | 2020-01-24 09:28:48 +0200 |
commit | d25e5e3879f1a1c1cf6a5bcd82f6cc2eb7288c72 (patch) | |
tree | 051719fc5de3c64ee8350a7bb7e16f250bb7bfda /src/apk_version.h | |
parent | 093c4b80777ccaff95789ec9cafd630a321fcc36 (diff) | |
download | apk-tools-d25e5e3879f1a1c1cf6a5bcd82f6cc2eb7288c72.tar.gz apk-tools-d25e5e3879f1a1c1cf6a5bcd82f6cc2eb7288c72.tar.bz2 apk-tools-d25e5e3879f1a1c1cf6a5bcd82f6cc2eb7288c72.tar.xz apk-tools-d25e5e3879f1a1c1cf6a5bcd82f6cc2eb7288c72.zip |
Harden signature verification process
This mostly boils down to making sure control_started and
data_started are consistently used to gate actions, instead of
relying whether on file names start with a '.'.
None of the weaknesses this fixes are exploitable, but they
might have become so after changes to seemingly-unrelated code,
so it's good to clean them up.
Diffstat (limited to 'src/apk_version.h')
0 files changed, 0 insertions, 0 deletions