Changes between Initial Version and Version 1 of Ticket #13579


Ignore:
Timestamp:
10/08/12 08:31:48 (9 years ago)
Author:
jdemeyer
Comment:

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #13579 – Description

    initial v1  
    1 `test_executable` runs various executables in `/tmp`. Since Python has `.` in `sys.path`, it is trivial for any user to have code executed by the user running the doctests. For example:
     1`test_executable` runs various executables in `/tmp`. When running a script, Python puts the directory containing that script in `sys.path`. Therefore, it is trivial for any user to have code executed by the user running the doctests. For example:
    22{{{
    33[eviluser@hostname ~]$ echo 'print "EVIL!!"' > /tmp/socket.py