diff options
| author | sebres <sebres@users.sourceforge.net> | 2023-10-27 10:46:17 (GMT) |
|---|---|---|
| committer | sebres <sebres@users.sourceforge.net> | 2023-10-27 10:46:17 (GMT) |
| commit | 4221d111bdf2f0077f8974317e441c30e8de959c (patch) | |
| tree | a06e902e1b3bb329ff6ac9d7f3dbfe8c60ac3dcb /unix/tclUnixTest.c | |
| parent | 49e6cd0d8b91d20b36af82ee31045d19c38f9f8a (diff) | |
| download | tcl-4221d111bdf2f0077f8974317e441c30e8de959c.zip tcl-4221d111bdf2f0077f8974317e441c30e8de959c.tar.gz tcl-4221d111bdf2f0077f8974317e441c30e8de959c.tar.bz2 | |
fixes percent-subst regression [fb2fa9b3f6] introduced by fixing of vulnerability [21b0629c81];
warning (todo): since it'd reopen a injection-vector by execution of command processor/batch-files as described in [fb2fa9b3f6] (unexpected tripple/double quote),
[exec] as well as [open |...] should get new option for safe escape (or no .bat/.cmd/comspec execution with arguments from foreign input can be considered as safe without extra parameters validation).
Diffstat (limited to 'unix/tclUnixTest.c')
0 files changed, 0 insertions, 0 deletions
