[fpc-pascal] Function for checking correct file name

Giuliano Colla giuliano.colla at fastwebnet.it
Sun Sep 16 13:39:45 CEST 2012


Il 15/09/2012 23:48, Jorge Aldo G. de F. Junior ha scritto:
> This is a security risk, because, if the function isnt almost perfect,
> someone could end up reading the passwords file (security.sam on
> windows ? whatever im not a windows programmer) or rewriting criticial
> files on a system.
IOW you mean that the Open File dialog in Lazarus is a security risk, 
because it might allows a user to open and read or write a password file?
Let's be serious. Security must be a system concern, not an application 
concern.
If the system gives an application access to sensible data then it's the 
system which isn't secure.

Giuliano




More information about the fpc-pascal mailing list