Movatterモバイル変換


[0]ホーム

URL:


Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

gh-102950: Implement PEP 706 – Filter for tarfile.extractall#102953

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to ourterms of service andprivacy statement. We’ll occasionally send you account related emails.

Already on GitHub?Sign in to your account

Merged
encukou merged 16 commits intopython:mainfromencukou:tarfile-dir-traversal-sqsq
Apr 24, 2023
Merged
Show file tree
Hide file tree
Changes from1 commit
Commits
Show all changes
16 commits
Select commitHold shift + click to select a range
cde089c
Implement PEP 706 – Filter for tarfile.extractall
encukouJan 31, 2023
2395c92
Add a blurb
encukouMar 23, 2023
561a9d4
Remove unneeded backslashes in docs
encukouMar 27, 2023
54b5644
Fix typos in docs & comments
encukouMar 27, 2023
7867fc3
Clarify the arguments to register_unpack_format's +function* argument
encukouMar 27, 2023
734190d
tests: Clean up unused variables and unnecessary f-strings
encukouMar 27, 2023
d55ae42
Make filter keyword-only in shutil
encukouApr 6, 2023
c795bb3
Address documentation review
encukouApr 6, 2023
5d850cc
Fix ReST syntax
encukouApr 6, 2023
81e9050
Merge main branch to resolve conflict in Whatsnew
encukouApr 11, 2023
de11090
Remove typo
encukouApr 11, 2023
b0c0674
Improve errorlevel handling
encukouApr 18, 2023
3796fdf
Fix the tests to match the PEP update
encukouApr 19, 2023
08ab551
Document type of errorlevel
encukouApr 19, 2023
0474842
Skip symlink-related test failures on WASI
encukouApr 20, 2023
a255634
Ignore unrelated errors in NoneInfoTests_Misc.test_add
encukouApr 20, 2023
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
PrevPrevious commit
NextNext commit
Fix typos in docs & comments
Thanks to Ethan for spotting these
  • Loading branch information
@encukou
encukou committedMar 27, 2023
commit54b56446f97c8aaf90b66ef4cb7a9d095f751fe2
6 changes: 3 additions & 3 deletionsDoc/library/tarfile.rst
View file
Open in desktop
Original file line numberDiff line numberDiff line change
Expand Up@@ -38,7 +38,7 @@ Some facts and figures:

.. versionchanged:: 3.12
Archives are extracted using a :ref:`filter <tarfile-extraction-filter>`,
which makes easy to either limit surprising/dangerous features,
which makesiteasy to either limit surprising/dangerous features,
or to acknowledge that they are expected and the archive is fully trusted.
By default, archives are fully trusted, but this default is deprecated
and slated to change in Python 3.14.
Expand DownExpand Up@@ -985,8 +985,8 @@ Here is an incomplete list of things to consider:
etc.).
* Check that filenames have expected extensions (discouraging files that
execute when you “click on them”, or extension-less files like Windows special device names),
*Limiting the number of extracted files, total size of extracted data,
filename length (including symlink length), size of individual files.
*Limit the number of extracted files, total size of extracted data,
filename length (including symlink length),andsize of individual files.
* Check for files that would be shadowed on case-insensitive filesystems.

Also note that:
Expand Down
2 changes: 1 addition & 1 deletionLib/shutil.py
View file
Open in desktop
Original file line numberDiff line numberDiff line change
Expand Up@@ -1300,7 +1300,7 @@ def unpack_archive(filename, extract_dir=None, format=None, filter=None):

In case none is found, a ValueError is raised.

If `filter` is given, it is passed tohe underlying
If `filter` is given, it is passed tothe underlying
extraction function.
"""
sys.audit("shutil.unpack_archive", filename, extract_dir, format)
Expand Down

[8]ページ先頭

©2009-2025 Movatter.jp