Ensure that HMAC objects are properly initialized
未关闭
@picnixz 已经在做这个了。
开始于 2026年8月15日。
extension-modules
type-bug
- 主要语言
- Python
- 星标
- 77.2k
- 派生
- 35.9k
- PR 合并指标
- PR 指标待抓取
描述
Bug report
Bug description:
This affects the following situations:
_hmac.new()frees an uninitialized HACL pointer when the key exceedsUINT32_MAX_hmac_HMAC_copy_implrunsHASHLIB_INIT_MUTEX(copy)after the falliblehmac_copy_state
The solution is simply to always entirely initialize the HMAC object before working with it. We also change the usage of PyObject_New to tp->tp_alloc directly so that we only alter fields for which the 0-value would not be suitable.
CPython versions tested on:
CPython main branch
Operating systems tested on:
No response
Linked PRs
- gh-155845
- gh-157036
- gh-157037
贡献指南
从这里开始
- 先读完整个 Issue,再读项目的贡献指南。
- 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
- Fork 仓库,在一个分支上完成修改。
- 提交 Pull Request,并在描述里引用这个 Issue 编号。
评估
这个 Issue 还没有评估数据。