towerops/lib/snmpkit/snmp_lib/mib
Graham McIntire fb1d4c564f
security: fix critical vulnerabilities and atom exhaustion risks
Critical fixes:
- Add [:safe] option to binary_to_term to prevent RCE attacks
- Implement whitelist validation for String.to_atom conversions
- Add input validation before String.to_existing_atom usage

Changes:
- MIB compiler and cache: Use safe binary deserialization
- SNMP contexts: Whitelist protocol, device type, and source atoms
- API controllers: Validate error message keys before atom conversion
- Reduce function nesting to comply with Credo standards

All 6,145 tests passing with zero Credo issues.

Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
2026-02-08 10:30:30 -06:00
..
ast.ex bring in snmpkit 2026-01-23 12:52:17 -06:00
compiler.ex security: fix critical vulnerabilities and atom exhaustion risks 2026-02-08 10:30:30 -06:00
derivative_work.txt bring in snmpkit 2026-01-23 12:52:17 -06:00
error.ex bring in snmpkit 2026-01-23 12:52:17 -06:00
logger.ex bring in snmpkit 2026-01-23 12:52:17 -06:00
parser.ex credo fixes 2026-01-23 16:49:02 -06:00
preprocessor.ex bring in snmpkit 2026-01-23 12:52:17 -06:00
registry.ex credo fixes 2026-01-23 16:49:02 -06:00
snmp_tokenizer.ex credo improvements 2026-01-23 13:40:49 -06:00
utilities.ex credo fixes 2026-01-23 16:49:02 -06:00