From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from firstgate.proxmox.com (firstgate.proxmox.com [212.224.123.68]) by lore.proxmox.com (Postfix) with ESMTPS id 850711FF161 for ; Tue, 10 Sep 2024 13:34:02 +0200 (CEST) Received: from firstgate.proxmox.com (localhost [127.0.0.1]) by firstgate.proxmox.com (Proxmox) with ESMTP id 8D2DE33C0B; Tue, 10 Sep 2024 13:34:01 +0200 (CEST) Message-ID: <0aa92306-8351-47e1-b3c7-23695e2df973@proxmox.com> Date: Tue, 10 Sep 2024 13:33:57 +0200 MIME-Version: 1.0 User-Agent: Mozilla Thunderbird To: Proxmox VE development discussion , =?UTF-8?Q?Fabian_Gr=C3=BCnbichler?= References: <20240809112234.1572295-1-f.gruenbichler@proxmox.com> <20240809112234.1572295-4-f.gruenbichler@proxmox.com> Content-Language: en-US From: Fiona Ebner In-Reply-To: <20240809112234.1572295-4-f.gruenbichler@proxmox.com> X-SPAM-LEVEL: Spam detection results: 0 AWL -0.058 Adjusted score from AWL reputation of From: address BAYES_00 -1.9 Bayes spam probability is 0 to 1% DMARC_MISSING 0.1 Missing DMARC policy KAM_DMARC_STATUS 0.01 Test Rule for DKIM or SPF Failure with Strict Alignment SPF_HELO_NONE 0.001 SPF: HELO does not publish an SPF Record SPF_PASS -0.001 SPF: sender matches SPF record Subject: Re: [pve-devel] [PATCH qemu-server 1/1] disk import: add additional safeguards for imported image files X-BeenThere: pve-devel@lists.proxmox.com X-Mailman-Version: 2.1.29 Precedence: list List-Id: Proxmox VE development discussion List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Reply-To: Proxmox VE development discussion Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: base64 Errors-To: pve-devel-bounces@lists.proxmox.com Sender: "pve-devel" QW0gMDkuMDguMjQgdW0gMTM6MjIgc2NocmllYiBGYWJpYW4gR3LDvG5iaWNobGVyOgo+IGNyZWF0 aW5nIG5vbi1yYXcgZGlzayBpbWFnZXMgd2l0aCBhcmJpdHJhcnkgY29udGVudCBpcyBvbmx5IHBv c3NpYmxlIHdpdGggcmF3Cj4gYWNjZXNzIHRvIHRoZSBzdG9yYWdlLCBidXQgY2hlY2tpbmcgZm9y IHJlZmVyZW5jZXMgdG8gZXh0ZXJuYWwgZmlsZXMgZG9lc24ndAo+IGh1cnQuCj4gCj4gU2lnbmVk LW9mZi1ieTogRmFiaWFuIEdyw7xuYmljaGxlciA8Zi5ncnVlbmJpY2hsZXJAcHJveG1veC5jb20+ Cj4gLS0tCj4gCj4gTm90ZXM6Cj4gICAgIHJlcXVpcmVzIHB2ZS1zdG9yYWdlIGNoYW5nZSB0byBh Y3R1YWxseSBoYXZlIGFuIGVmZmVjdAo+IAo+ICBQVkUvQVBJMi9RZW11LnBtIHwgMTUgKysrKysr KysrKysrLS0tCj4gIDEgZmlsZSBjaGFuZ2VkLCAxMiBpbnNlcnRpb25zKCspLCAzIGRlbGV0aW9u cygtKQo+IAo+IGRpZmYgLS1naXQgYS9QVkUvQVBJMi9RZW11LnBtIGIvUFZFL0FQSTIvUWVtdS5w bQo+IGluZGV4IGQyNWE3OWZlLi4zMDgzOTc0NSAxMDA2NDQKPiAtLS0gYS9QVkUvQVBJMi9RZW11 LnBtCj4gKysrIGIvUFZFL0FQSTIvUWVtdS5wbQo+IEBAIC00MTIsMTIgKzQxMiwxNCBAQCBteSBz dWIgY3JlYXRlX2Rpc2tzIDogcHJvdG90eXBlKCQkJCQkJCQkJCQpIHsKPiAgCj4gIAkJJG5lZWRz X2NyZWF0aW9uID0gJGxpdmVfaW1wb3J0Owo+ICAKPiAtCQlpZiAoUFZFOjpTdG9yYWdlOjpwYXJz ZV92b2x1bWVfaWQoJHNvdXJjZSwgMSkpIHsgIyBQVkUtbWFuYWdlZCB2b2x1bWUKPiArCQlpZiAo bXkgKCRzb3VyY2Vfc3RvcmFnZSwgJHNvdXJjZV92b2xpZCkgPSBQVkU6OlN0b3JhZ2U6OnBhcnNl X3ZvbHVtZV9pZCgkc291cmNlLCAxKSkgeyAjIFBWRS1tYW5hZ2VkIHZvbHVtZQoKTml0OiBsaW5l IHRvbyBsb25nIGFuZCBob25lc3RseSwgYmVjb21lcyBhIGJpdCBoYXJkIHRvIHJlYWQuCgo+ICAJ CSAgICBpZiAoJGxpdmVfaW1wb3J0ICYmICRkcyBuZSAnZWZpZGlzazAnKSB7Cj4gIAkJCW15ICRw YXRoID0gUFZFOjpTdG9yYWdlOjpwYXRoKCRzdG9yZWNmZywgJHNvdXJjZSkKPiAgCQkJICAgIG9y IGRpZSAiZmFpbGVkIHRvIGdldCBhIHBhdGggZm9yICckc291cmNlJ1xuIjsKPiAgCQkJJHNvdXJj ZSA9ICRwYXRoOwo+IC0JCQkoJHNpemUsIG15ICRzb3VyY2VfZm9ybWF0KSA9IFBWRTo6U3RvcmFn ZTo6ZmlsZV9zaXplX2luZm8oJHNvdXJjZSk7Cj4gKwkJCSMgY2hlY2sgcG90ZW50aWFsbHkgdW50 cnVzdGVkIGltYWdlIGZpbGUhCj4gKwkJCSgkc2l6ZSwgbXkgJHNvdXJjZV9mb3JtYXQpID0gUFZF OjpTdG9yYWdlOjpmaWxlX3NpemVfaW5mbygkc291cmNlLCB1bmRlZiwgMSk7Cj4gKwo+ICAJCQlk aWUgImNvdWxkIG5vdCBnZXQgZmlsZSBzaXplIG9mICRzb3VyY2VcbiIgaWYgISRzaXplOwo+ICAJ CQkkbGl2ZV9pbXBvcnRfbWFwcGluZy0+eyRkc30gPSB7Cj4gIAkJCSAgICBwYXRoID0+ICRzb3Vy Y2UsCj4gQEAgLTQzMSw2ICs0MzMsMTIgQEAgbXkgc3ViIGNyZWF0ZV9kaXNrcyA6IHByb3RvdHlw ZSgkJCQkJCQkJCQkKSB7Cj4gIAkJCSAgICBmb3JtYXQgPT4gJGRpc2stPntmb3JtYXR9LAo+ICAJ CQl9Owo+ICAKPiArCQkJbXkgJHNjZmcgPSBQVkU6OlN0b3JhZ2U6OnN0b3JhZ2VfY29uZmlnKCRz dG9yZWNmZywgJHNvdXJjZV9zdG9yYWdlKTsKPiArCQkJIyBjaGVjayBwb3RlbnRpYWxseSB1bnRy dXN0ZWQgaW1hZ2UgZmlsZSEKPiArCQkJaWYgKCRzY2ZnLT57cGF0aH0pIHsKPiArCQkJICAgIFBW RTo6U3RvcmFnZTo6ZmlsZV9zaXplX2luZm8oUFZFOjpTdG9yYWdlOjpwYXRoKCRzdG9yZWNmZywg JHNvdXJjZSksIHVuZGVmLCAxKTsKClRoaXMgY2FsbCBpcyBwcm9iYWJseSBicm9rZW4sIHNlZSBy ZXBseSB0byBndWVzdC1jb21tb24gcGF0Y2guCgpOaXQ6IEknZCBtb3ZlIHRoaXMgdG8gdGhlIGJl Z2lubmluZyBvZiB0aGUgYnJhbmNoIHRvIGF2b2lkIGhhdmluZyBpdApiZXR3ZWVuICRkZXN0X2lu Zm8gYXNzaWdubWVudHMuCgo+ICsJCQl9Cj4gKwo+ICAJCQkkZGVzdF9pbmZvLT57ZWZpc2l6ZX0g PSBQVkU6OlFlbXVTZXJ2ZXI6OmdldF9lZml2YXJzX3NpemUoJGNvbmYsICRkaXNrKQo+ICAJCQkg ICAgaWYgJGRzIGVxICdlZmlkaXNrMCc7Cj4gIAo+IEBAIC00NDEsNyArNDQ5LDggQEAgbXkgc3Vi IGNyZWF0ZV9kaXNrcyA6IHByb3RvdHlwZSgkJCQkJCQkJCQkKSB7Cj4gIAkJICAgIH0KPiAgCQl9 IGVsc2Ugewo+ICAJCSAgICAkc291cmNlID0gUFZFOjpTdG9yYWdlOjphYnNfZmlsZXN5c3RlbV9w YXRoKCRzdG9yZWNmZywgJHNvdXJjZSwgMSk7Cj4gLQkJICAgICgkc2l6ZSwgbXkgJHNvdXJjZV9m b3JtYXQpID0gUFZFOjpTdG9yYWdlOjpmaWxlX3NpemVfaW5mbygkc291cmNlKTsKPiArCQkgICAg IyBjaGVjayBwb3RlbnRpYWxseSB1bnRydXN0ZWQgaW1hZ2UgZmlsZSEKPiArCQkgICAgKCRzaXpl LCBteSAkc291cmNlX2Zvcm1hdCkgPSBQVkU6OlN0b3JhZ2U6OmZpbGVfc2l6ZV9pbmZvKCRzb3Vy Y2UsIHVuZGVmLCAxKTsKPiAgCQkgICAgZGllICJjb3VsZCBub3QgZ2V0IGZpbGUgc2l6ZSBvZiAk c291cmNlXG4iIGlmICEkc2l6ZTsKPiAgCj4gIAkJICAgIGlmICgkbGl2ZV9pbXBvcnQgJiYgJGRz IG5lICdlZmlkaXNrMCcpIHsKCgpfX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f X19fX19fX19fXwpwdmUtZGV2ZWwgbWFpbGluZyBsaXN0CnB2ZS1kZXZlbEBsaXN0cy5wcm94bW94 LmNvbQpodHRwczovL2xpc3RzLnByb3htb3guY29tL2NnaS1iaW4vbWFpbG1hbi9saXN0aW5mby9w dmUtZGV2ZWwK