[Portland-bugs] [Bug 66670] xdg-open: command injection vulnerability

bugzilla-daemon at freedesktop.org bugzilla-daemon at freedesktop.org
Sat Nov 15 11:07:58 PST 2014


https://bugs.freedesktop.org/show_bug.cgi?id=66670

--- Comment #5 from Rex Dieter <rdieter at math.unl.edu> ---
Ah, but using ' instead of " quotes, leads to something that avoids shell
expansion, maybe we can simply go with that.

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freedesktop.org/archives/portland-bugs/attachments/20141115/7a2ff582/attachment-0001.html>


More information about the Portland-bugs mailing list