--- mm2.7/src/bin/sun-message.csh~ Tue May 19 10:22:52 1998 +++ mm2.7/src/bin/sun-message.csh Tue May 19 10:26:39 1998 @@ -5,6 +5,8 @@ # This is sun-message. It looks at $2 to figure out how to decode $1, then gives the # user a short menu of choices, display, save, or quit. # +# $2 is untrustworthy data. Quote it. +# mkdir /tmp/decode.$$ cd /tmp/decode.$$ @@ -12,7 +14,7 @@ set METAMAIL_PAGER=more endif -if ($2 == "uuencode") then +if ("$2" == "uuencode") then set fn=`mktemp $METAMAIL_TMPDIR/audio.XXXXXX` test -n "$fn" if $? then