Strange advisory

itpp2012 nginx-forum at nginx.us
Sun May 11 09:12:34 UTC 2014


"One man's data is another man's code"

If this would happen on Windows you'd scream murder, yet in 2014 you are
advocating an insecure workspace by allowing foreign control stuff to do out
of bound stuff.

Anything and anyone can create a file which contains stuff, it is the
responsibility of whatever views/reads it for what happens not the initial
creator.

Posted at Nginx Forum: http://forum.nginx.org/read.php?2,250008,250014#msg-250014



More information about the nginx mailing list