]> granicus.if.org Git - procps-ng/commit
top: add another field sanity check in 'config_file()'
authorJim Warner <james.warner@comcast.net>
Wed, 23 May 2018 05:00:00 +0000 (00:00 -0500)
committerCraig Small <csmall@enc.com.au>
Thu, 31 May 2018 10:28:32 +0000 (20:28 +1000)
commita42742b0df64a3b282eac469447e9f57d416449e
treec7da24c9a0e0e20049d946b827c6a333520da80d
parentcc5c9e6c1ea1911cb53f1cb0643cbc5f6e4cad1d
top: add another field sanity check in 'config_file()'

Until the Qualys security audit I had never considered
it a possibility that some malicious person might edit
the top config file to achieve some nefarious results.

And while the Qualys approach tended to concentrate on
the symptoms from such an effort, subsequent revisions
more properly concentrated on startup and that rcfile.

This commit completes those efforts with 1 more field.

Signed-off-by: Jim Warner <james.warner@comcast.net>
top/top.c