Tags:
create new tag
, view all tags

Bug: GetRevision() is Tainted on Windows

In RcsWrap.pm, function getRevision, the Windows code path is not taint proof. Error message: unsafe unlink for $tmpfile and $tmpRevFile

Test case

Click "diff" on any page

Environment

TWiki version: 01 Feb 2003
TWiki plugins: gnuskin
Server OS: Windows XP SP1
Web server: IIS
Perl version: ActiveState perl 5.6
Client OS: Windows XP SP1
Web Browser: IE 6.0

-- MartinKuhne - 19 Jun 2003

Follow up

Fix record

Topic revision: r1 - 2003-06-19 - MartinKuhne
 
Twitter Delicious Facebook Digg Google Bookmarks E-mail LinkedIn Reddit StumbleUpon    
  • Download TWiki
TWiki logo Powered by Perl Hosted by OICcam.com Ideas, requests, problems regarding TWiki? Send feedback. Ask community in the support forum.
Copyright © 1999-2012 by the contributing authors. All material on this collaboration platform is the property of the contributing authors.