Devuan bug report logs - #309
remove flag "-f" in pidof

Package: sysvinit-utils; Reported by: KatolaZ <katolaz@freaknet.org>;
Date: Tue, 19 Mar 2019 06:33:01 UTC;
Done: KatolaZ <katolaz@freaknet.org>;
Maintainer for sysvinit-utils is (unknown).

View this report as an mbox folder.


Report forwarded to devuan-bugs@lists.dyne.org, owner@bugs.devuan.org:
bug#309; Package sysvinit-utils. Full text available.



Acknowledgement sent to KatolaZ <katolaz@freaknet.org>:
New bug report received and forwarded. Copy sent to owner@bugs.devuan.org. Full text available.



Message received at submit@bugs.devuan.org:

Date: Tue, 19 Mar 2019 07:29:11 +0100
From: KatolaZ <katolaz@freaknet.org>
To: submit@bugs.devuan.org
Subject: remove flag "-f" in pidof

[Message part 1 (text/plain, inline)]

Package: sysvinit-utils
Version: 2.93-8
Severity: normal

I am opening this bug because I think the recently added flag '-f' in
pidof should be removed. It was intended to be used as a way to format
the PIDs according to printf-style formatters, but accepting
unsanitised input from the user is quite dangerous, as shown in
#924792. The proposed solution to #924792 was to let pidof -f
interpret only '%d' and '\n'.

This is at least an unnecessary complication. pidof is already
printing the PIDs as integers (!), and any formatting can (but I would
say should/must) be done downstream by sed/awk/whatever. We can't add
a formatter to any single CLI command :\

Please remove the unneded '-f' flag. Unix is much much better than
that.

KatolaZ

[signature.asc (application/pgp-signature, inline)]






Reply sent to KatolaZ <katolaz@freaknet.org>:
You have taken responsibility. Full text available.



Notification sent to KatolaZ <katolaz@freaknet.org>:
bug acknowledged by developer. Full text available.



Message received at 309-done@bugs.devuan.org:

Date: Tue, 19 Mar 2019 07:39:19 +0100
From: KatolaZ <katolaz@freaknet.org>
To: 309-done@bugs.devuan.org
Subject: sorry, wrong BTS

[Message part 1 (text/plain, inline)]

This should have gone to bugs.debian.org. Sorry.

Closing

KatolaZ



[signature.asc (application/pgp-signature, inline)]






Devuan BTS -- Powered by Debian bug tracking system
Copyright (C) 1999 Darren O. Benham,
1997 nCipher Corporation Ltd, 1994-97 Ian Jackson.

Devuan Bugs Owner <owner@bugs.devuan.org>.
Last modified: Fri, 6 Dec 2019 20:24:20 UTC