apache-commons-io/CVE-2021-29425-3.patch
2021-05-08 15:54:59 +08:00

27 lines
1.0 KiB
Diff

From bb388f116290c3e3ff244082fd5c376a45a5c798 Mon Sep 17 00:00:00 2001
From: Stefan Bodewig <stefan.bodewig@innoq.com>
Date: Thu, 17 May 2018 21:03:26 +0200
Subject: [PATCH 3/4] isRFC3986HostName applies to IPv4 addresses so we can
safe the test
---
src/main/java/org/apache/commons/io/FilenameUtils.java | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/src/main/java/org/apache/commons/io/FilenameUtils.java b/src/main/java/org/apache/commons/io/FilenameUtils.java
index a829f8c7..b93476bb 100644
--- a/src/main/java/org/apache/commons/io/FilenameUtils.java
+++ b/src/main/java/org/apache/commons/io/FilenameUtils.java
@@ -1469,7 +1469,7 @@ public class FilenameUtils {
* @return true if the given name is a valid host name
*/
private static boolean isValidHostName(String name) {
- return isIPv4Address(name) || isIPv6Address(name) || isRFC3986HostName(name);
+ return isIPv6Address(name) || isRFC3986HostName(name);
}
private static final Pattern IPV4_PATTERN =
--
2.23.0