
oss-sec mailing list archives
Re: shell wildcard expansion (un)safety
From: Georgi Guninski <gguninski () gmail com>
Date: Fri, 8 Nov 2024 10:39:43 +0200
This is known since at least 2019, but the distro list can't tell vulnerability from a rant [1] [2] `grep text -- *` is not portable solution, since not all warez recognize --. e.g.: $find . -- find: unknown predicate `--' [1] Shell wildcards considered dangerous? https://seclists.org/oss-sec/2019/q4/133 [2] https://www.linkedin.com/pulse/careful-wildcards-linux-rm-georgi-guninski-ieaif
Current thread:
- Re: shell wildcard expansion (un)safety, (continued)
- Re: shell wildcard expansion (un)safety Steffen Nurpmeso (Nov 07)
- Re: shell wildcard expansion (un)safety Solar Designer (Nov 07)
- Re: shell wildcard expansion (un)safety Steffen Nurpmeso (Nov 15)
- Re: shell wildcard expansion (un)safety lists (Nov 10)
- Re: shell wildcard expansion (un)safety Ali Polatel (Nov 12)
- Re: shell wildcard expansion (un)safety Sean Whitton (Nov 17)
- Re: shell wildcard expansion (un)safety Eli Schwartz (Nov 06)
- Re: shell wildcard expansion (un)safety Fay Stegerman (Nov 06)
- Re: shell wildcard expansion (un)safety Jakub Wilk (Nov 07)
- Re: shell wildcard expansion (un)safety Max Nikulin (Nov 07)
- Re: shell wildcard expansion (un)safety Georgi Guninski (Nov 08)
- Re: shell wildcard expansion (un)safety Dominik Czarnota (Nov 08)
- Re: shell wildcard expansion (un)safety Eli Schwartz (Nov 10)
- Re: shell wildcard expansion (un)safety Jeroen Roovers (Nov 10)
- Re: shell wildcard expansion (un)safety Fay Stegerman (Nov 10)
- Re: shell wildcard expansion (un)safety Dominik Czarnota (Nov 08)