From 773203ebb8181bf7af7cad014d3acf1ed861492d Mon Sep 17 00:00:00 2001 From: deajan Date: Sun, 27 Sep 2015 16:09:26 +0200 Subject: [PATCH] Fixed possible vulnerability with program execution path. --- osync-srv | 4 +--- 1 file changed, 1 insertion(+), 3 deletions(-) diff --git a/osync-srv b/osync-srv index 6120c6f..82f034a 100755 --- a/osync-srv +++ b/osync-srv @@ -24,7 +24,7 @@ progexec=osync.sh progpath=/usr/local/bin confdir=/etc/osync pidfile=/var/run/$prog -SCRIPT_BUILD=1304201502 +SCRIPT_BUILD=2015092701 if [ ! -f $progpath/$progexec ] && [ ! -f $progexec ]; then echo "Cannot find $prog executable in $progpath nor in local path." @@ -47,8 +47,6 @@ start() { do if [ -f $progpath/$progexec ]; then $progpath/$progexec $cfgfile --on-changes > /dev/null 2>&1 & - elif [ -f ./$progexec ]; then - ./$progexec $cfgfile --on-changes > /dev/null 2>&1 & else echo "Cannot find $prog executable in $progpath" exit 1