X-Git-Url: https://git.octo.it/?a=blobdiff_plain;f=mktag.c;h=fc6a9bf5f34158605add585439848367deaefac5;hb=af6e277c5eddbcf82582b4bbd3e50b36aa61a20a;hp=aa4a6d863bfb9e091b900470de2d03fa431bbfe2;hpb=91d7b8afc2dc8bacde2012ad076cd8d0c4d36697;p=git.git diff --git a/mktag.c b/mktag.c index aa4a6d86..fc6a9bf5 100644 --- a/mktag.c +++ b/mktag.c @@ -42,7 +42,7 @@ static int verify_tag(char *buffer, unsigned long size) int typelen; char type[20]; unsigned char sha1[20]; - const char *object, *type_line, *tag_line; + const char *object, *type_line, *tag_line, *tagger_line; if (size < 64 || size > MAXSIZE-1) return -1; @@ -92,6 +92,12 @@ static int verify_tag(char *buffer, unsigned long size) return -1; } + /* Verify the tagger line */ + tagger_line = tag_line; + + if (memcmp(tagger_line, "tagger", 6) || (tagger_line[6] == '\n')) + return -1; + /* The actual stuff afterwards we don't care about.. */ return 0; } @@ -105,10 +111,18 @@ int main(int argc, char **argv) if (argc != 1) usage("cat | git-mktag"); + setup_git_directory(); + // Read the signature - size = read(0, buffer, MAXSIZE); + size = 0; + for (;;) { + int ret = xread(0, buffer + size, MAXSIZE - size); + if (ret <= 0) + break; + size += ret; + } - // Verify it for some basic sanity: it needs to start with "object \ntype " + // Verify it for some basic sanity: it needs to start with "object \ntype\ntagger " if (verify_tag(buffer, size) < 0) die("invalid tag signature file");