Unescaped command string formatting/shell injection |
||
Issue descriptionThere are calls to host.run() that format command strings naively, potentially vulnerable to injection or bugs. Example in autotest server/crashcollect.py
,
Jan 10
Archiving P3s older than 1 year with no owner or component. |
||
►
Sign in to add a comment |
||
Comment 1 by ayatane@chromium.org
, Jun 20 2017Owner: ----