0x0@programming.dev to Programming@programming.dev · 11 months agoCritical Rust flaw enables Windows command injection attackswww.bleepingcomputer.comexternal-linkmessage-square25fedilinkarrow-up1135cross-posted to: rust@programming.devpulse_of_truth@infosec.pub
arrow-up1135external-linkCritical Rust flaw enables Windows command injection attackswww.bleepingcomputer.com0x0@programming.dev to Programming@programming.dev · 11 months agomessage-square25fedilinkcross-posted to: rust@programming.devpulse_of_truth@infosec.pub
minus-squareGiooschi@lemmy.worldlinkfedilinkEnglisharrow-up10·11 months ago It’s also extremely unlikely that you’d be running a bat script with untrusted arguments on Windows. It happens in yt-dl, which is where this was first reported https://github.com/yt-dlp/yt-dlp/security/advisories/GHSA-hjq6-52gw-2g7p
It happens in yt-dl, which is where this was first reported https://github.com/yt-dlp/yt-dlp/security/advisories/GHSA-hjq6-52gw-2g7p