Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > gnu.bash.bug > #14584

Re: compgen -W evaluation is leading to security holes

Path csiph.com!goblin1!goblin.stu.neva.ru!usenet.stanford.edu!not-for-mail
From Joey Hess <id@joeyh.name>
Newsgroups gnu.bash.bug
Subject Re: compgen -W evaluation is leading to security holes
Date Sat, 15 Sep 2018 16:14:23 -0400
Lines 35
Approved bug-bash@gnu.org
Message-ID <mailman.825.1537046371.1284.bug-bash@gnu.org> (permalink)
References <20180914215243.487991140754@darkstar.kitenet.net> <cb865fff-7eb4-ec01-08fe-1094c7a68fdb@case.edu>
NNTP-Posting-Host lists.gnu.org
Mime-Version 1.0
Content-Type multipart/signed; micalg=pgp-sha512; protocol="application/pgp-signature"; boundary="BOKacYhQ+x31HxR3"
X-Trace usenet.stanford.edu 1537046372 26429 208.118.235.17 (15 Sep 2018 21:19:32 GMT)
X-Complaints-To action@cs.stanford.edu
Cc bug-bash@gnu.org, bash@packages.debian.org
To Chet Ramey <chet.ramey@case.edu>
Envelope-to bug-bash@gnu.org
X-Question 42
DKIM-Signature v=1; a=rsa-sha256; c=simple/simple; d=joeyh.name; s=mail; t=1537042463; bh=rJYSNUnzg5XhX/tdwOEy1WQBVvt085LL46UQL3UBFkE=; h=Date:From:To:Cc:Subject:References:In-Reply-To:From; b=Pzg0kNMRRrwF6GlwpHNzbZyfYDgTXC3oIHU7W/6jQ6Bx1ApeFgIHRwCKfW0d8h0QI 1LPZHNS7UfmoVk9kPY847KzhNphYQ4h/j1mtONAwkQAaobana7OoZ2k8ksUbA1FInG YYW+BQB9rpj3CE++bpGbWki0xktBpey89thN6g/s=
Content-Disposition inline
In-Reply-To <cb865fff-7eb4-ec01-08fe-1094c7a68fdb@case.edu>
User-Agent Mutt/1.10.1 (2018-07-13)
X-detected-operating-system by eggs.gnu.org: Genre and OS details not recognized.
X-Received-From 2600:3c03::f03c:91ff:fe73:b0d2
X-Mailman-Approved-At Sat, 15 Sep 2018 17:19:30 -0400
X-BeenThere bug-bash@gnu.org
X-Mailman-Version 2.1.21
Precedence list
List-Id Bug reports for the GNU Bourne Again SHell <bug-bash.gnu.org>
List-Unsubscribe <https://lists.gnu.org/mailman/options/bug-bash>, <mailto:bug-bash-request@gnu.org?subject=unsubscribe>
List-Archive <http://lists.gnu.org/archive/html/bug-bash/>
List-Post <mailto:bug-bash@gnu.org>
List-Help <mailto:bug-bash-request@gnu.org?subject=help>
List-Subscribe <https://lists.gnu.org/mailman/listinfo/bug-bash>, <mailto:bug-bash-request@gnu.org?subject=subscribe>
Xref csiph.com gnu.bash.bug:14584

Show key headers only | View raw


[Multipart message — attachments visible in raw view] - view raw

The people affected by this security hole will certianly find it
surprising, but if you're not concerned by unnecessary features that
encoruage security holes, I won't try to argue.

-- 
see shy jo

Back to gnu.bash.bug | Previous | Next | Find similar | Unroll thread


Thread

Re: compgen -W evaluation is leading to security holes Joey Hess <id@joeyh.name> - 2018-09-15 16:14 -0400

csiph-web