Beefy Boxes and Bandwidth Generously Provided by pair Networks
No such thing as a small change
 
PerlMonks  

Re: security: making sure graphics uploaded by users are safe

by gizzlon (Initiate)
on Oct 02, 2009 at 10:41 UTC ( #798815=note: print w/ replies, xml ) Need Help??


in reply to security: making sure graphics uploaded by users are safe

Since it's data it should not be a problem unless there's a bug in the parser.. Of course that happens but unless your site is insanely secure there are probably more pressing problems..

It might be a good idea to run it through ImageMageick or something once since that, if I recall correctly, fixes a problem with stacking code(?) in GiFs.

But if there's a parsing bug in ImageMagick you just made their problem your problem.

Scanning with AV seems kind of useless.. if there's code there wouldn't it be custom?


Comment on Re: security: making sure graphics uploaded by users are safe

Log In?
Username:
Password:

What's my password?
Create A New User
Node Status?
node history
Node Type: note [id://798815]
help
Chatterbox?
and the web crawler heard nothing...

How do I use this? | Other CB clients
Other Users?
Others taking refuge in the Monastery: (5)
As of 2014-12-25 15:31 GMT
Sections?
Information?
Find Nodes?
Leftovers?
    Voting Booth?

    Is guessing a good strategy for surviving in the IT business?





    Results (160 votes), past polls