From b7406cc4c45765f9a0caad472a858f06cd6bd024 Mon Sep 17 00:00:00 2001 From: Ophestra Date: Fri, 14 Nov 2025 17:49:01 +0900 Subject: [PATCH] ldd: update package doc comment This should hopefully deter misuse of this package. Signed-off-by: Ophestra --- ldd/ldd.go | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) diff --git a/ldd/ldd.go b/ldd/ldd.go index 307d848..9611c7b 100644 --- a/ldd/ldd.go +++ b/ldd/ldd.go @@ -1,4 +1,9 @@ -// Package ldd retrieves linker information by invoking ldd from glibc or musl and parsing its output. +// Package ldd provides a robust parser for ldd(1) output, and a convenience function +// for running ldd(1) in a strict sandbox. +// +// Note: despite the additional hardening, great care must be taken when using ldd(1). +// As a general rule, you must never run ldd(1) against a file that you do not wish to +// execute within the same context. package ldd import (