in reply to Re: To taint or not to taint?
in thread To taint or not to taint?
For data coming from users, yes, absolutely agree.
For internal data, eg paths from your config files which are readable only by root, would you still want this enabled? Would you do any real checks on these, or just untaint them blindly?
|
---|
Replies are listed 'Best First'. | |
---|---|
Re^3: To taint or not to taint?
by tilly (Archbishop) on Mar 19, 2009 at 15:40 UTC | |
by clinton (Priest) on Mar 19, 2009 at 15:44 UTC | |
by tilly (Archbishop) on Mar 19, 2009 at 15:46 UTC |
In Section
Meditations