Skip to content

mgr/orch: read untrusted input using the yaml SafeLoader#35660

Merged
tchaikov merged 1 commit intoceph:masterfrom
mgfritch:orch-yaml-safe-load
Jun 24, 2020
Merged

mgr/orch: read untrusted input using the yaml SafeLoader#35660
tchaikov merged 1 commit intoceph:masterfrom
mgfritch:orch-yaml-safe-load

Conversation

@mgfritch
Copy link
Contributor

https://msg.pyyaml.org/load

Signed-off-by: Michael Fritch mfritch@suse.com

Checklist

  • References tracker ticket
  • Updates documentation if necessary
  • Includes tests for new functionality or reproducer for bug

Show available Jenkins commands
  • jenkins retest this please
  • jenkins test classic perf
  • jenkins test crimson perf
  • jenkins test signed
  • jenkins test make check
  • jenkins test make check arm64
  • jenkins test submodules
  • jenkins test dashboard
  • jenkins test dashboard backend
  • jenkins test docs
  • jenkins render docs
  • jenkins test ceph-volume all
  • jenkins test ceph-volume tox

@mgfritch mgfritch requested a review from a team as a code owner June 18, 2020 21:11
@sebastian-philipp
Copy link
Contributor

do we have a test for this code?

@tchaikov
Copy link
Contributor

jenkins test docs

@tchaikov tchaikov merged commit dc12f5f into ceph:master Jun 24, 2020
@mgfritch mgfritch deleted the orch-yaml-safe-load branch June 24, 2020 19:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants