From b800d1bb10723ee56cf1177194d810a1d364accc Mon Sep 17 00:00:00 2001 From: Axel Burri Date: Sun, 20 Nov 2022 15:49:31 +0100 Subject: [PATCH] btrbk: strict input validation from kdf backend --- btrbk | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/btrbk b/btrbk index bc0387c..2c7e4dc 100755 --- a/btrbk +++ b/btrbk @@ -1760,7 +1760,7 @@ sub btrfs_send_to_file($$$;$$) if(/^KEY=([0-9a-fA-f]+)/) { $kdf_session_key = $1; } - elsif(/^([a-z_]+)=(.*)/) { + elsif(/^([a-z_]+)=($raw_info_value_match)/) { my $info_key = 'kdf_' . $1; my $info_val = $2; DEBUG "Adding raw_info from kdf_backend: $info_key=$info_val";