Skip to content

Link to security lab website instead of semmle blog#17

Merged
kevinbackhouse merged 3 commits into
masterfrom
xcorail-patch-2
Nov 20, 2019
Merged

Link to security lab website instead of semmle blog#17
kevinbackhouse merged 3 commits into
masterfrom
xcorail-patch-2

Conversation

@xcorail
Copy link
Copy Markdown
Contributor

@xcorail xcorail commented Nov 20, 2019

No description provided.

Comment thread CodeQL_Queries/cpp/Facebook_Fizz_CVE-2019-3560/README.md Outdated
Use [this snapshot](https://downloads.lgtm.com/snapshots/cpp/facebook/fizz/facebookincubator_fizz_cpp-srcVersion_c69ad1baf3f04620393ebadc3eedd130b74f4023-dist_odasa-lgtm-2019-01-13-f9dca2a-universal.zip) for the demo.

[Fizz](https://github.com/facebookincubator/fizz) contained a remotely triggerable infinite loop. For more details about the bug, see this [blog post](https://lgtm.com/blog/facebook_fizz_CVE-2019-3560). A proof-of-concept exploit is available [here](https://github.com/Semmle/SecurityExploits/tree/446048470633bf0f8da9570d008d056dbaa28ea9/Facebook/Fizz/CVE-2019-3560).
[Fizz](https://github.com/facebookincubator/fizz) contained a remotely triggerable infinite loop. For more details about the bug, see this [blog post](https://securitylab.github.com/research/facebook-fizz-CVE-2019-3560). A proof-of-concept exploit is available [here](https://github.com/github/security-lab/tree/master/SecurityExploits/Facebook/Fizz/CVE-2019-3560).
Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The original SecurityExploits link included the revision id to make it a permalink, but here it has been replaced with a link to the master branch. Please could you either keep the permalink or use a relative path, so that the link doesn't break?

Comment thread CodeQL_Queries/cpp/Facebook_Fizz_CVE-2019-3560/README.md Outdated
@kevinbackhouse kevinbackhouse merged commit def8de3 into master Nov 20, 2019
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants