in reply to Re: Insecure dependency in open
in thread Insecure dependency in open
Now that all the sleuthing has been done to determine exactly "why" the filename was tainted, I can program around it accordingly. I'm still feeling residual commitment to my statement that perl needs some programmatic way around this sort of thing, but I'm not exactly sure what that would look like... In principle, I like having the protection for basic stuff, but I also want all that rope to hang myself, should I choose to do so. :-|
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re^3: Insecure dependency in open
by sgifford (Prior) on Jan 22, 2007 at 05:15 UTC | |
by halley (Prior) on Jan 22, 2007 at 14:32 UTC | |
by argv (Pilgrim) on Jan 22, 2007 at 18:31 UTC | |
by ikegami (Patriarch) on Jan 22, 2007 at 18:49 UTC | |
by argv (Pilgrim) on Jan 22, 2007 at 19:21 UTC | |
by ikegami (Patriarch) on Jan 22, 2007 at 20:17 UTC | |
by Fletch (Bishop) on Jan 22, 2007 at 19:54 UTC | |
by argv (Pilgrim) on Jan 22, 2007 at 22:07 UTC | |
by ikegami (Patriarch) on Jan 22, 2007 at 22:27 UTC | |
|
Re^3: Insecure dependency in open
by Anonymous Monk on Jan 22, 2007 at 05:33 UTC |