Tim Kelsey
055598028a
Adding a test for partial paths in exec functions
...
When using functions like subprocess.Popen etc to launch an
external executable, the full path should be given. This prevents
an attacker from manipulting the search path or placing a bogus
executable that will be launched instead of the intended one.
Change-Id: I4a11f988bc3e954331ab0f0902ea849c6ec31888
2015-07-02 19:20:16 +01:00
..
2015-05-06 14:06:44 +01:00
2014-08-14 15:46:50 -07:00
2015-06-03 16:28:36 +00:00
2015-03-12 17:11:46 -05:00
2015-02-26 10:19:26 -08:00
2015-06-03 16:47:25 -05:00
2015-06-03 16:47:25 -05:00
2015-06-03 16:28:36 +00:00
2014-09-16 16:02:20 -07:00
2014-10-08 11:50:45 +01:00
2015-07-02 19:20:16 +01:00
2014-07-17 11:52:33 -07:00
2014-11-26 16:22:05 +00:00
2015-06-03 16:28:36 +00:00
2014-07-16 10:27:50 -07:00
2015-02-23 17:42:58 -08:00
2015-03-05 08:44:09 -08:00
2015-06-03 16:28:36 +00:00
2014-07-17 11:23:57 -07:00
2015-06-29 12:56:40 -07:00
2014-07-17 12:10:18 -07:00
2014-07-25 11:20:20 -07:00
2015-07-02 19:20:16 +01:00
2015-06-03 16:47:25 -05:00
2015-06-03 16:47:25 -05:00
2014-07-25 11:10:03 -07:00
2014-07-25 11:10:03 -07:00
2014-07-25 11:10:03 -07:00
2015-07-02 19:20:16 +01:00
2015-06-18 14:47:01 -06:00
2015-07-02 19:20:16 +01:00
2015-06-03 16:28:36 +00:00
2015-07-02 19:20:16 +01:00
2015-03-09 14:46:04 -05:00
2014-07-16 10:27:50 -07:00
2015-02-25 17:39:22 -08:00
2015-07-02 19:20:16 +01:00
2014-09-10 15:38:27 -07:00
2014-09-10 15:38:27 -07:00
2015-02-12 11:33:26 -06:00
2015-07-02 19:20:16 +01:00
2015-01-21 06:09:46 -08:00
2015-07-02 19:20:16 +01:00
2015-07-02 19:20:16 +01:00
2015-06-03 16:28:36 +00:00
2015-06-03 16:28:36 +00:00
2015-04-24 09:58:26 -07:00
2015-04-24 09:58:26 -07:00
2015-04-24 09:58:26 -07:00
2015-06-03 16:28:36 +00:00
2015-06-03 16:28:36 +00:00
2015-06-03 16:28:36 +00:00
2015-06-03 16:28:36 +00:00
2015-01-16 11:02:03 -08:00