From 2a5ae3c7a53978145122a163e63a490a6a6c9993 Mon Sep 17 00:00:00 2001 From: Kazuki Yamaguchi Date: Fri, 21 Jul 2017 15:22:38 +0900 Subject: ossl_pem_passwd_cb: do not check for taintedness It is perfectly permissible to take passwords from an untrusted source. --- ext/openssl/ossl.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'ext/openssl') diff --git a/ext/openssl/ossl.c b/ext/openssl/ossl.c index 5a15c9ad..562241c5 100644 --- a/ext/openssl/ossl.c +++ b/ext/openssl/ossl.c @@ -151,7 +151,7 @@ ossl_pem_passwd_cb0(VALUE flag) VALUE pass; pass = rb_yield(flag); - SafeStringValue(pass); + StringValue(pass); return pass; } -- cgit v1.2.3