Beefy Boxes and Bandwidth Generously Provided by pair Networks
Pathologically Eclectic Rubbish Lister
 
PerlMonks  

Re: Homegrown Pseudo-Tainting

by ChOas (Curate)
on Mar 15, 2002 at 09:36 UTC ( #151945=note: print w/ replies, xml ) Need Help??


in reply to Homegrown Pseudo-Tainting

Just to add to all the posters above, who focus more on
untainting the data, perldoc perlsec gives this example
to beforehand check if the data is actually tainted:

sub is_tainted { return ! eval { join('',@_), kill 0; 1; }; }

GreetZ!,
    ChOas

print "profeth still\n" if /bird|devil/;


Comment on Re: Homegrown Pseudo-Tainting
Download Code
Re: Re: Homegrown Pseudo-Tainting
by gellyfish (Monsignor) on Mar 15, 2002 at 11:49 UTC

    Except that will only do what you want when you have used the '-T' switch. And as the person who asked the question said they can't use '-T' ..

    /J\

Log In?
Username:
Password:

What's my password?
Create A New User
Node Status?
node history
Node Type: note [id://151945]
help
Chatterbox?
and the web crawler heard nothing...

How do I use this? | Other CB clients
Other Users?
Others scrutinizing the Monastery: (6)
As of 2015-07-03 20:22 GMT
Sections?
Information?
Find Nodes?
Leftovers?
    Voting Booth?

    The top three priorities of my open tasks are (in descending order of likelihood to be worked on) ...









    Results (56 votes), past polls