snaggen@programming.dev to Rust@programming.dev · 2 years agoSecurity advisory for the standard library (CVE-2024-24576)blog.rust-lang.orgexternal-linkmessage-square4linkfedilinkarrow-up145
arrow-up144external-linkSecurity advisory for the standard library (CVE-2024-24576)blog.rust-lang.orgsnaggen@programming.dev to Rust@programming.dev · 2 years agomessage-square4linkfedilink
minus-squareIch, einfach anders@lemmings.worldlinkfedilinkarrow-up12·2 years agoTl;dr: std::process::Command is vulnerable to shell injection if you invoke cmd.exe or *.{cmd,bat} on Windows.
Tl;dr:
std::process::Commandis vulnerable to shell injection if you invokecmd.exeor*.{cmd,bat}on Windows.