Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

A post-mortem after this bug is fixed would be interesting, I don't see how 2MB of NULL characters should be different from a random <img>.


A random embedded image wouldn't be passed through the HTML parser (at least not if the web server has it's MIMEs set up correctly - and if they don't, then the site would be considerably less usable).

It will be interesting to see the results though - to see if the null characters even reach that far or if this is effectively hitting Opera with a zip-bomb


this reminded me of `A file that's both an acceptable HTML page and a JPEG (view source on it)` : http://news.ycombinator.com/item?id=4209052


data: URLs?


Well yeah, I nearly added that disclaimer myself but then thought it was pretty obvious the previous poster was referring to referenced URIs rather than data URIs. Though I may have misinterpreted his post.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: