Taint check

J. Paul Reed preed at sigkill.com
Wed May 28 07:19:01 UTC 2003


On 27 May 2003 at 15:16:24, Colin Bendell moved bits on my disk to say:

> What is the reasoning for using the Taint check on many of the perl
> scripts in bugzilla?  

See bug 108982. Basically, taint mode provides some modicum of security for
certain types of things in perl.

> I've had to remove them to get Perl working under win32 (worked as is in
> the linux configuration).  

That's probably not the proper solution to the problem; doing so reduces
the security of your BZ installation. 

Are you using IIS?
 
> Forgive me if this has been discussed ad nausea, but the 'developers'
> news group doesn't seem to have a 'search' feature.

It does.

Find it at http://groups.google.com.

Later,
Paul
------------------------------------------------------------------------
J. Paul Reed -- 0xDF8708F8 || preed at sigkill.com || web.sigkill.com/preed
To hold on to sanity too tight is insane.   -- Nick Falzone, Pushing Tin

I use PGP; you should use PGP too... if only to piss off John Ashcroft



More information about the developers mailing list