Fix ExecUnescaped

This commit is contained in:
Ed Minnix
2023-03-28 13:22:33 -04:00
parent 25359d2218
commit a3c1d08a59

View File

@@ -48,5 +48,5 @@ predicate builtFromUncontrolledConcat(Expr expr) {
from StringArgumentToExec argument
where
builtFromUncontrolledConcat(argument) and
not execTainted(_, _, argument)
not execIsTainted(_, _, argument)
select argument, "Command line is built with string concatenation."