Tcl Source Code

View Ticket
Login
Ticket UUID: 82d12c9ce324bc0f8c5d4347ab90f2099be48a3c
Title: unsupported commands should not be available in safe interpreters
Type: Bug Created on: 2025-11-14 23:49:03
Submitter: jan.nijtmans Assigned to: jan.nijtmans
Subsystem: 18. Commands M-Z Severity: Important
Priority: 5 Medium Last modified: 2025-12-08 09:18:44
Status: Closed Closed by: jan.nijtmans
Resolution: Fixed Closed on: 2025-12-08 09:18:44
Version: 9.0
Description:

Since [a165eede1d22d847|this] commit for Tcl 9.1, all "unsupported" commands are disabled in safe interpreters, except "assemble" and "corotype". All of those are potentially dangerous, so it makes sense to backport this change to 9.0.

Considering that "unsupported" commands should be discouraged anyway (they could be removed in any version), even "assemble" and "corotype" are questionable (they dispose internal information to a safe interpreter), I propose to do the same with _all_ "unsupported" commands (even future ones). If someone wants to make any of them available to a safe interpreter, making an "alias" is always possible.

User Comments:
jan.nijtmans added on 2025-11-15 00:01:35:

Proposed fix [0f3dd960a0d9f92b|here]


jan.nijtmans added on 2025-12-08 09:18:44:

No-one responded, I take that as a silent agreement.

Fixed [0323825637b5831d|here]