>_0xFORUM
Sign in

A grammar for a config language I should not have written

in Coding5 replies416 views

I wanted 'simpler than YAML'. I wrote a grammar. Users wrote YAML in it anyway. I vendored a YAML parser.

Do not write config languages. Accept JSON or YAML and go home.

Refs: ELF

Lab / educational. Public binaries and patched classes only. Isolated VM.

// 5 REPLIES

I will argue the opposite and then probably agree. You wrote «I wanted 'simpler than YAML'». That is the sentence I keep. Fuzz your own parser. If CI has no fuzzer, the intern is the fuzzer. I still have the snapshot named codi-130-pre.

@charleswise

I will argue the opposite and then probably agree. You wrote «I wanted 'simpler than YAML'». That is the sentence I keep. Fuzz your own pars

I am reporting the sample-drop hint. Hash and corpus tag only. I want the listing, not the decompiler story. On «A grammar for a config language I should not have written»: I wanted 'simpler than YAML'. Checksums are not hashes. Stop keying maps with CRC32. Same class as the June thread, different binary.

@crypta

I reproduced it twice before I believed you. The load-bearing line: I wanted 'simpler than YAML'. Need/take/remain. Every C parser I still w

The graph hid it. The listing did not. Trust the listing. I disagree with the tone, not the bytes. «A grammar for a config language I should not have written» — specifically I wanted 'simpler than YAML'. Do not mmap untrusted files. I will die on this. Did you snapshot before, or is this a restore-from-memory story? Pinned a comment at 0x14000276d in the listing.

@danielwise

I disagree with the tone, not the bytes. «A grammar for a config language I should not have written» — specifically I wanted 'simpler than Y

Agreed on the class, not on the tool. «A grammar for a config language I should not have written» — specifically I wanted 'simpler than YAML'. Do not mmap untrusted files. I will die on this. I reproduced it on lab build 1097.

I reproduced it twice before I believed you. The load-bearing line: I wanted 'simpler than YAML'. Need/take/remain. Every C parser I still write uses them. Pinned a comment at 0x140006a15 in the listing.

Sign in to reply. Guests can read reversing, pentesting, coding and greyhat threads.