snaggen@programming.dev to Rust@programming.dev · 2 years agoSecurity advisory for the standard library (CVE-2024-24576)blog.rust-lang.orgexternal-linkmessage-square10linkfedilinkarrow-up151arrow-down11
arrow-up150arrow-down1external-linkSecurity advisory for the standard library (CVE-2024-24576)blog.rust-lang.orgsnaggen@programming.dev to Rust@programming.dev · 2 years agomessage-square10linkfedilink
minus-squareIch, einfach anders@lemmings.worldlinkfedilinkarrow-up12·2 years agoTl;dr: std::process::Command is vulnerable to shell injection if you invoke cmd.exe or *.{cmd,bat} on Windows.
Tl;dr:
std::process::Commandis vulnerable to shell injection if you invokecmd.exeor*.{cmd,bat}on Windows.