Local root vulnerability in snap-confine
Local root vulnerability in snap-confine
Posted Feb 20, 2022 3:03 UTC (Sun) by foom (subscriber, #14868)In reply to: Local root vulnerability in snap-confine by epa
Parent article: Local root vulnerability in snap-confine
Eh? No use for spaces and parentheses? Both of those are incredibly useful in filenames for humans! Characters like newlines or tabs, sure -- those have no place in filenames. And you could arguably exclude double quotes as well, but a filename like "Aaron's Report: Cats (2010)" is completely reasonable.
If there's blame to be had, it'd be for the Unix shell language which treats strings in a variable unsafely by default!
