Reply to post: That's the unix way of doing things..

Server-jacking exploits for ImageMagick are so trivial, you'll scream

Anonymous Coward
Anonymous Coward

That's the unix way of doing things..

... pass anything around chaining shell commands by invoking shells with all their issues (having being designed primarily to be interactive)... so every parameter is just a string (the UDT - Universal Data Type [TM] for lazy programmers) while shell special characters are still processed...

What? Calling a function in a library where parameters has types and can't be misused easily, and errors are returned in a code-friendly way and not just like strings you need to parse? Heck, that's not the Unix way, we *must* still chain commands as it was 1971, we can't truly load libraries in a few KBs of RAM we still have today, of course!

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

SUBSCRIBE TO OUR WEEKLY TECH NEWSLETTER

Biting the hand that feeds IT © 1998–2021