whimsical-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Sam Ruby <ru...@apache.org>
Subject [whimsy.git] [1/2] Commit bc5d407: file name should be considered safe
Date Wed, 16 Mar 2016 15:21:33 GMT
Commit bc5d4072160bc7b8ba082792a6356886b7f7679f:
    file name should be considered safe


Branch: refs/heads/master
Author: Sam Ruby <rubys@intertwingly.net>
Committer: Sam Ruby <rubys@intertwingly.net>
Pusher: rubys <rubys@apache.org>

------------------------------------------------------------
www/board/agenda/models/ipc.rb                               | + -
------------------------------------------------------------
2 changes: 1 additions, 1 deletions.
------------------------------------------------------------


diff --git a/www/board/agenda/models/ipc.rb b/www/board/agenda/models/ipc.rb
index 7766e98..136c785 100644
--- a/www/board/agenda/models/ipc.rb
+++ b/www/board/agenda/models/ipc.rb
@@ -46,7 +46,7 @@ def self.start_server
         RbConfig::CONFIG["ruby_install_name"] + RbConfig::CONFIG["EXEEXT"]
       )
 
-      exec(ruby, __FILE__, '--server-only')
+      exec(ruby, __FILE__.dup.untaint, '--server-only')
     end
 
     Process.detach pid

Mime
View raw message