Skip to content

Navigation Menu

Sign in
Sign up

Reject fragment delimiters in OPC part names - #1047

Open
Guflly wants to merge 2 commits into
dotnet:main from
Guflly:fix/opc-fragment-delimiter
Open

Reject fragment delimiters in OPC part names #1047
Guflly wants to merge 2 commits into
dotnet:main from
Guflly:fix/opc-fragment-delimiter

Conversation

@Guflly

@Guflly Guflly commented Jul 27, 2026

Copy link
Copy Markdown

Fixes #998.

Rejects raw # characters in OPC part names before signing instead of producing an invalid signature. The tests cover both root and nested entries and verify that no signature is left behind.

This follows the approach in #1042, which was closed before review.

eng/common/Build.ps1 -restore -build -test -sign -pack -publish -ci passes.

Guflly requested a review from a team as a code owner July 27, 2026 21:46

Guflly commented Jul 28, 2026

Copy link
Copy Markdown
Author

@dotnet-policy-service agree

Comment thread src/Sign.Core/Tools/VsixSignTool/OpcPart.cs Outdated
Comment thread src/Sign.Core/Tools/VsixSignTool/OpcPart.cs

@kartheekp-ms kartheekp-ms left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@Guflly please rebase since we migrated tests from Moq to NSubstitute.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Reviewers

@kartheekp-ms kartheekp-ms kartheekp-ms requested changes
@dtivel dtivel Awaiting requested review from dtivel
+1 more reviewer
@dlemstra dlemstra dlemstra left review comments
Reviewers whose approvals may not affect merge requirements

Requested changes must be addressed to merge this pull request.

Assignees

No one assigned

Labels

None yet

Projects

None yet

Milestone

No milestone

Development

Successfully merging this pull request may close these issues.

Octothorpe symbol (#) in OPC part names is not handled properly

AltStyle によって変換されたページ (->オリジナル) /