Join GitHub today
GitHub is home to over 20 million developers working together to host and review code, manage projects, and build software together.
Patch SciLexer.dll #3002
Comments
|
Can you provide more info other than copy/pasting the text because it really doesn't describe a problem. |
teepean
commented
Mar 7, 2017
|
This is from the Wikileaks CIA leak. |
mchubby
commented
Mar 7, 2017
•
|
Verbatim from https://groups.google.com/forum/#!original/scintilla-interest/ibNlrTJEj7s/zMClRx_tXw0J
Edit: sounds fishy, but taken out of context, sorry. Seems like this symbol should not be defined in static builds of the dll. |
|
@mchubby Thanks for that, it does make a bit more sense. This would still be best addressed by the Scintilla developers. However, I don't know why this is "unique" to Scintilla, you can say that any DLL that exports functions is vulnerable to hijacking. Edit: well I guess technically it doesn't even have to export anything. |
|
Fixed in b869163 |
gavin20 commentedMar 7, 2017
Reference: https://wikileaks.org/ciav7p1/cms/page_26968090.html