Skip to content
Verified Commit c0687bcd authored by James McCoy's avatar James McCoy
Browse files

licensecheck: Use Dpkg::IPC to run file command



The command being run through `` allowed the shell to interpret the
given file argument, which allows arbitrary command execution.  Using
Dpkg::IPC avoids the shell, directly executing file.

Closes: #794260
Signed-off-by: default avatarJames McCoy <jamessan@debian.org>
parent f43da2ce
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment