From bd4f4a76b1a9d5ae43a7731ffae064a45ad068c8 Mon Sep 17 00:00:00 2001 From: Steve Schnepp Date: Thu, 9 Mar 2023 21:11:49 +0100 Subject: [PATCH] m/httpd: untaint $PATH --- script/munin-httpd | 2 ++ 1 file changed, 2 insertions(+) diff --git a/script/munin-httpd b/script/munin-httpd index fe81d2d5e..406d68c35 100755 --- a/script/munin-httpd +++ b/script/munin-httpd @@ -13,6 +13,8 @@ use Munin::Master::Graph; use Munin::Master::HTML; use Munin::Common::Logger; +# Untaint $ENV{PATH} +$ENV{PATH} = "/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin"; sub handle_request { my $self = shift;