[HN Gopher] What is a parser mismatch vulnerability? (2022)
___________________________________________________________________
What is a parser mismatch vulnerability? (2022)
Author : subset
Score : 5 points
Date : 2023-12-23 10:05 UTC (1 days ago)
(HTM) web link (www.brainonfire.net)
(TXT) w3m dump (www.brainonfire.net)
| sylware wrote:
| Usually, some not verified and cleaned enough external input text
| managed to get into some complex and often brain damaged text
| parser (printf,sql,etc).
| o11c wrote:
| Usually? a result of the parser not having a machine-readable
| specification.
|
| For parsing proper, `bison --xml` is useful if you're allergic to
| code-generation. I don't have an equivalent for lexing.
___________________________________________________________________
(page generated 2023-12-24 23:00 UTC)