can you recover from reassigning __builtins__ in python?

徘徊边缘 提交于 2019-11-28 08:07:43

You can usually get access to anything you need, even when __builtins__ has been removed. It's just a matter of digging far enough. For example:

Python 2.7.3 (default, Apr 10 2012, 23:31:26) [MSC v.1500 32 bit (Intel)] on win32
Type "help", "copyright", "credits" or "license" for more information.
>>> __builtins__ = 0
>>> open
Traceback (most recent call last):
  File "<stdin>", line 1, in <module>
NameError: name 'open' is not defined
>>> dir
Traceback (most recent call last):
  File "<stdin>", line 1, in <module>
NameError: name 'dir' is not defined
>>> int
Traceback (most recent call last):
  File "<stdin>", line 1, in <module>
NameError: name 'int' is not defined
>>> float
Traceback (most recent call last):
  File "<stdin>", line 1, in <module>
NameError: name 'float' is not defined
>>>
>>> __builtins__ = [t for t in ().__class__.__bases__[0].__subclasses__() if 'warning' in t.__name__][0]()._module.__builtins__
>>>
>>> open
<built-in function open>
>>> int
<type 'int'>
>>> float
<type 'float'>
>>>

For an explanation of what the heck just happened here, read Eval really is dangerous, where similar techniques are used to demonstrate that you cannot safely execute untrusted Python code.

Basically messing with protected and reserved names means breaking your session, sometimes without a way to recover from.

For example, you can type in shell:

True = False # The chaos begins!

These are not possible with other programming languages, but python lets you do what you want, even if it'll break everything.

You're right; you can practically break a Python session. I doubt there's a way to completely destroy it - seeing Ned's answer was quite the revelation to me.

Being a very dynamic language, Python gives you a lot of rope to hang yourself with. Don't look at this as a flaw, though; a common Python slogan states that "we're all consenting adults here." If you understand the language and really know what you're doing, you have an insane amount of control over basically every aspect of Python.

标签
易学教程内所有资源均来自网络或用户发布的内容,如有违反法律规定的内容欢迎反馈
该文章没有解决你所遇到的问题?点击提问,说说你的问题,让更多的人一起探讨吧!