in reply to Re^2: unlink taint
in thread unlink taint
glob is a source of external input when "*" is used.
You're right. A quick test shows, though, that it doesn't matter whether there's a '*' in the glob expression or not:
$ perl -MScalar::Util=tainted -TE'say tainted($_) for glob "foo"' 1
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re^4: unlink taint
by ikegami (Patriarch) on Dec 20, 2010 at 23:11 UTC |