Libcurl gets a URL API
daniel.haxx.se
Libcurl gets a URL API
1–10 of 11 posts
Re: Libcurl gets a URL API
#2Re: Libcurl gets a URL API
#3By the way, parsing of URLs is a large-ish task; it'd be nice to have URL API in a separate library, which libcurl depends on, and which can be used without libcurl.
Re: Libcurl gets a URL API
#4The blog post mentions WHATWG URL spec and RFC 3986 - what is libcurl's URL parser implementing, what is its goal? By the way, parsing of URLs is a large-ish task; it'd be nice to have URL API in a separate library, which libcurl depends on, and which can be used without libcurl.
I get the impression the goal would be "parsing whatever users expect to be able to use as a URL in practice". He's written before about the difficulty of pinning down "the syntax of URLs":
https://daniel.haxx.se/blog/2016/05/11/my-url-isnt-your-url/
Re: Libcurl gets a URL API
#5Re: Libcurl gets a URL API
#6Serious question: what's the value of using this over https://uriparser.github.io/ ?
Re: Libcurl gets a URL API
#7Serious question: what's the value of using this over https://uriparser.github.io/ ?
Re: Libcurl gets a URL API
#8Serious question: what's the value of using this over https://uriparser.github.io/ ?
Re: Libcurl gets a URL API
#9Serious question: what's the value of using this over https://uriparser.github.io/ ?
> By offering applications access to libcurl's own URL parser, we hope to tighten a problematic vulnerable area for applications where the URL parser library would believe one thing and libcurl another. This could and has sometimes lead to security problems. (See for example Exploiting URL Parser in Trending Programming Languages! by Orange Tsai)
Re: Libcurl gets a URL API
#10Serious question: what's the value of using this over https://uriparser.github.io/ ?