Sebastian Pipping

Results 926 comments of Sebastian Pipping

Update: I have thrown [egypt](https://www.gson.org/egypt/) and a custom version of [`dot_find_cycles.py`](https://github.com/jantman/misc-scripts/blob/master/dot_find_cycles.py) at the code now and found 13 cycles of unbound direct and indirect recursion: 1. `ParseHexZero` -> `ParseHexZero` 2....

@zenden2k I value this report _and_ I wish it would have been in private to not attract more attackers. Anyone who monitors this repository had a chance to see this...

@zenden2k thanks! Update: I've put 3 hours into it in the meantime, and was able to resolve all 11 direct recursions and the 2 indirect ones, and created pull request...

@TimWolla thank you! Update: CVE request submitted to Mitre a minute ago.

@zenden2k do you have any knowledge why MSVC fails to [dissolve tail recursion](https://stackoverflow.com/a/34129) in this case? Did you manually disable all compile-time optimizations or something like that? What level of...

@zenden2k thanks for elaborating! 👍

> Update: CVE request submitted to Mitre a minute ago. Update: Just sent another request to Mitre (because there has not been a reply yet, not even the usual "we...

@zenden2k thanks for the clarification! 👍

> Update: Just sent another request to Mitre (because there has not been a reply yet, not even the usual "we received your request" automated reply). Update: Mitre has assigned...

Hello Peter, thanks for your reply! > This is intended to be used with the NCBI web API, or cached files from it or NCBI tools. The risk there is...