From 88fae6e0441d4195e089434f07d3e7fd811d6297 Mon Sep 17 00:00:00 2001 From: Lennart Poettering Date: Thu, 23 Aug 2012 18:47:01 +0200 Subject: shared: in code that might get called from suid programs use __secure_getenv() rather than getenv() It's better to be safe than sorry. --- src/shared/dbus-common.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'src/shared/dbus-common.c') diff --git a/src/shared/dbus-common.c b/src/shared/dbus-common.c index da2dc2e983..8d7c4620ce 100644 --- a/src/shared/dbus-common.c +++ b/src/shared/dbus-common.c @@ -121,7 +121,7 @@ int bus_connect(DBusBusType t, DBusConnection **_bus, bool *_private, DBusError * try via XDG_RUNTIME_DIR first, then * fallback to normal bus access */ - e = getenv("XDG_RUNTIME_DIR"); + e = __secure_getenv("XDG_RUNTIME_DIR"); if (e) { char *p; -- cgit v1.2.3-54-g00ecf