in reply to Re^5: Insecure dependency in open
in thread Insecure dependency in open

Yes, I know the doc. I'm just asking why STDIN is part of that group, especially for -t STDIN.

Replies are listed 'Best First'.
Re^7: Insecure dependency in open
by ikegami (Patriarch) on Jan 22, 2007 at 20:17 UTC

    I already explained and I even gave you an example. I don't know what more you want. Give me an idea?

    In the most basic of terms, -T means don't trust the user. The user controls STDIN, so it must not be trusted.