public inbox for glibc-cvs@sourceware.org
help / color / mirror / Atom feed
* [glibc] system: Add "--" after "-c" for sh (BZ #28519)
@ 2023-03-28 13:58 Adhemerval Zanella
0 siblings, 0 replies; only message in thread
From: Adhemerval Zanella @ 2023-03-28 13:58 UTC (permalink / raw)
To: glibc-cvs
https://sourceware.org/git/gitweb.cgi?p=glibc.git;h=868506eb427c9dcc6d869cd4885679be04e1b7dd
commit 868506eb427c9dcc6d869cd4885679be04e1b7dd
Author: Joe Simmons-Talbott <josimmon@redhat.com>
Date: Wed Mar 22 14:04:30 2023 -0400
system: Add "--" after "-c" for sh (BZ #28519)
Prevent sh from interpreting a user string as shell options if it
starts with '-' or '+'. Since the version of /bin/sh used for testing
system() is different from the full-fledged system /bin/sh add support
to it for handling "--" after "-c". Add a testcase to ensure the
expected behavior.
Signed-off-by: Joe Simmons-Talbott <josimmon@redhat.com>
Reviewed-by: Adhemerval Zanella <adhemerval.zanella@linaro.org>
Diff:
---
libio/iopopen.c | 2 +-
stdlib/tst-system.c | 14 ++++++++++++++
support/shell-container.c | 7 ++++++-
sysdeps/posix/system.c | 1 +
4 files changed, 22 insertions(+), 2 deletions(-)
diff --git a/libio/iopopen.c b/libio/iopopen.c
index a64033e60f..4cc405f2de 100644
--- a/libio/iopopen.c
+++ b/libio/iopopen.c
@@ -87,7 +87,7 @@ spawn_process (posix_spawn_file_actions_t *fa, FILE *fp, const char *command,
}
err = __posix_spawn (&((_IO_proc_file *) fp)->pid, _PATH_BSHELL, fa, 0,
- (char *const[]){ (char*) "sh", (char*) "-c",
+ (char *const[]){ (char*) "sh", (char*) "-c", (char*) "--",
(char *) command, NULL }, __environ);
if (err != 0)
return err;
diff --git a/stdlib/tst-system.c b/stdlib/tst-system.c
index 47a0afe6bf..3a55ec2791 100644
--- a/stdlib/tst-system.c
+++ b/stdlib/tst-system.c
@@ -146,6 +146,20 @@ do_test (void)
TEST_COMPARE_STRING (result.out.buffer, "...\n");
}
+ {
+ struct support_capture_subprocess result;
+ const char *cmd = "-echo";
+ result = support_capture_subprocess (call_system,
+ &(struct args) { cmd, 127 });
+ support_capture_subprocess_check (&result, "system", 0, sc_allow_stderr |
+ sc_allow_stdout);
+ char *returnerr = xasprintf ("%s: execing -echo failed: "
+ "No such file or directory",
+ basename(_PATH_BSHELL));
+ TEST_COMPARE_STRING (result.err.buffer, returnerr);
+ free (returnerr);
+ }
+
{
struct support_capture_subprocess result;
result = support_capture_subprocess (call_system,
diff --git a/support/shell-container.c b/support/shell-container.c
index b1f9e793c1..28437e4206 100644
--- a/support/shell-container.c
+++ b/support/shell-container.c
@@ -455,7 +455,12 @@ main (int argc, const char **argv)
dprintf (stderr, " argv[%d] is `%s'\n", i, argv[i]);
if (strcmp (argv[1], "-c") == 0)
- run_command_string (argv[2], argv+3);
+ {
+ if (strcmp (argv[2], "--") == 0)
+ run_command_string (argv[3], argv+4);
+ else
+ run_command_string (argv[2], argv+3);
+ }
else
run_script (argv[1], argv+2);
diff --git a/sysdeps/posix/system.c b/sysdeps/posix/system.c
index d77720a625..488b95163b 100644
--- a/sysdeps/posix/system.c
+++ b/sysdeps/posix/system.c
@@ -147,6 +147,7 @@ do_system (const char *line)
ret = __posix_spawn (&pid, SHELL_PATH, 0, &spawn_attr,
(char *const[]){ (char *) SHELL_NAME,
(char *) "-c",
+ (char *) "--",
(char *) line, NULL },
__environ);
__posix_spawnattr_destroy (&spawn_attr);
^ permalink raw reply [flat|nested] only message in thread
only message in thread, other threads:[~2023-03-28 13:58 UTC | newest]
Thread overview: (only message) (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2023-03-28 13:58 [glibc] system: Add "--" after "-c" for sh (BZ #28519) Adhemerval Zanella
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).