Page MenuHomePhabricator

BiDi vulnerability: RIGHT-TO-LEFT OVERRIDE - U 202E in titles / usernames generates a mess
Closed, ResolvedPublic

Description

Author: gangleri

Description:
attachment follows

Sorry for this:

Dear friends,
http://yi.wikipedia.org/wiki/%E2%80%AEtest is using RIGHT-TO-LEFT OVERRIDE - U
202E (see http://www.fileformat.info/info/unicode/char/202e/index.htm ) in the
title.

It is used *without* closing
Unicode Character 'POP DIRECTIONAL FORMATTING' (U+202C)
http://www.fileformat.info/info/unicode/char/202c/index.htm

This is why [[yi:Special:Recentchanges]] gets totaly confused writing in
mirrored fashion up to th end of the line.

I know "Don't feed t**s". However a long term decision about valid titles /
normalisation should be made.

Regards Reinhardt [[user:gangleri]]


Version: unspecified
Severity: normal
URL: http://yi.wikipedia.org/wiki/Special:Recentchanges

Details

Reference
bz3888

Event Timeline

bzimport raised the priority of this task from to Normal.Nov 21 2014, 8:53 PM
bzimport added a project: MediaWiki-Rdbms.
bzimport set Reference to bz3888.
bzimport added a subscriber: Unknown Object (MLST).
bzimport created this task.Nov 5 2005, 1:16 PM

gangleri wrote:

screen dump

Attached:

tietew-mediazilla wrote:

*** This bug has been marked as a duplicate of 3696 ***

gangleri wrote:

getting better today:
http://test.leuksman.com/view/%E2%80%AEtest
title displays as *tset*
http://test.leuksman.com/view/%E2%80%AEtest
title dispalys as test

Restricted Application added a project: I18n. · View Herald TranscriptJun 2 2015, 2:22 PM