From 36bae26de82ba9e27438af8dfb52600032c283f0 Mon Sep 17 00:00:00 2001 From: Petr Baudis Date: Fri, 2 Mar 2012 17:33:55 +0100 Subject: [PATCH] fixup.sh: Disallow also paths beginning with / --- fixupd/fixup.sh | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/fixupd/fixup.sh b/fixupd/fixup.sh index c9ce5f3..8b30db9 100755 --- a/fixupd/fixup.sh +++ b/fixupd/fixup.sh @@ -11,9 +11,9 @@ proj="$1" groupfile="$2" mirror_user="$3" -# disallow paths containing ../ +# disallow suspicious paths case "$proj" in - *../*) + /* | *..*) echo "Invalid path" >&2 exit 1 ;; -- 2.11.4.GIT