mirror of
https://github.com/opencloud-eu/opencloud.git
synced 2026-10-03 17:35:14 -04:00
Point the go-micro.dev/v4 replace at the latest main-v4 maintenance branch commit in butonic/go-micro (cd412c15) instead of the v4.11.3 tag. The new base is upstream v4.11.1 plus the registry cache node-TTL fixes (upstream #2715, #2736, #2740), the concurrent map access fix (upstream #2794), plus further dependency updates and test fixes on the maintenance branch. The branch also modernizes go-micro's own go.mod (go 1.26, lego, dario.cat/mergo v1, x/deque v2, ...), and MVS pulls the aligned versions into this module: lego v4.35.2 -> lego/v5 v5.5.2, go-jose/go-jose/v4 -> v4.1.5, gofrs/flock -> v0.13.1, mattn/go-isatty -> v0.0.24, go.uber.org/zap -> v1.28.0, x/net -> 0.59.0, miekg/dns -> 1.1.73, moby api/client, ProtonMail/go-crypto -> 1.5.2, klauspost/compress -> 1.20.1, gorilla/handlers -> 1.5.2, gobwas/ws -> 1.4.0, nxadm/tail -> 1.4.11, ... Signed-off-by: Jörn Friedrich Dreyer <jfd@butonic.de>
65 lines
1.4 KiB
Go
65 lines
1.4 KiB
Go
package user
|
|
|
|
import (
|
|
"errors"
|
|
"fmt"
|
|
"io"
|
|
"os"
|
|
)
|
|
|
|
// maxUserFileBytes caps how much data is read from any user-database file.
|
|
// User database files are expected to be relatively small. 10 MiB provides
|
|
// generous headroom while bounding memory usage.
|
|
const maxUserFileBytes = 10 << 20
|
|
|
|
// openUserFile attempts to open a user-database file with a limitedFile
|
|
// capped at maxUserFileBytes. It produces an error if the given path is
|
|
// a non-regular file.
|
|
func openUserFile(path string) (*limitedFile, error) {
|
|
f, err := os.Open(path)
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
|
|
info, err := f.Stat()
|
|
if err != nil {
|
|
_ = f.Close()
|
|
return nil, err
|
|
}
|
|
if !info.Mode().IsRegular() {
|
|
_ = f.Close()
|
|
return nil, &os.PathError{
|
|
Op: "open",
|
|
Path: path,
|
|
Err: errors.New("not a regular file"),
|
|
}
|
|
}
|
|
|
|
return &limitedFile{
|
|
File: f,
|
|
// Allow one byte past the cap so an overflow surfaces as an
|
|
// error rather than a silent EOF that the parser would treat as
|
|
// a clean end-of-file (and miss any entries past the cap).
|
|
LimitedReader: &io.LimitedReader{R: f, N: maxUserFileBytes + 1},
|
|
name: path,
|
|
}, nil
|
|
}
|
|
|
|
type limitedFile struct {
|
|
*os.File
|
|
*io.LimitedReader
|
|
name string
|
|
}
|
|
|
|
func (l *limitedFile) Read(p []byte) (int, error) {
|
|
n, err := l.LimitedReader.Read(p)
|
|
if l.LimitedReader.N == 0 {
|
|
return n, &os.PathError{
|
|
Op: "read",
|
|
Path: l.name,
|
|
Err: fmt.Errorf("file exceeds %d bytes", maxUserFileBytes),
|
|
}
|
|
}
|
|
return n, err
|
|
}
|