Beefy Boxes and Bandwidth Generously Provided by pair Networks
P is for Practical

Re: Blatant security problem in certain CPAN module installs

by runrig (Abbot)
on May 03, 2004 at 20:51 UTC ( #350131=note: print w/replies, xml ) Need Help??

in reply to Blatant security problem in certain CPAN module installs

E.g., this is what is fetched and then eval'd for CGI-Builder:
# # ; print << "EOS" I hope you will appreciate CGI::Builder 1.2. If you have any problem with this installation, please report it at http::// EOS #
The eval seems completely unnecessary, it seems like he could just as easily fetch just the message itself, and then print it from Makefile.PL instead of using eval.

Log In?

What's my password?
Create A New User
Node Status?
node history
Node Type: note [id://350131]
erix looks up Sheldon ...
[erix]: ah. well, that must feel nice, no? ;)
[erix]: not the best way to make friends, though (I suppose)
LanX Fun with Flags anyone?

How do I use this? | Other CB clients
Other Users?
Others avoiding work at the Monastery: (8)
As of 2018-03-22 18:53 GMT
Find Nodes?
    Voting Booth?
    When I think of a mole I think of:

    Results (283 votes). Check out past polls.