From owner-freebsd-audit@FreeBSD.ORG Fri Jul 16 04:45:36 2004 Return-Path: Delivered-To: freebsd-audit@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id DA4FC16A4CE; Fri, 16 Jul 2004 04:45:36 +0000 (GMT) Received: from pooker.samsco.org (pooker.samsco.org [168.103.85.57]) by mx1.FreeBSD.org (Postfix) with ESMTP id 4B8FA43D49; Fri, 16 Jul 2004 04:45:34 +0000 (GMT) (envelope-from scottl@samsco.org) Received: from [192.168.0.11] (junior-wifi.samsco.home [192.168.0.11]) (authenticated bits=0) by pooker.samsco.org (8.12.11/8.12.10) with ESMTP id i6G4pB1g039598; Thu, 15 Jul 2004 22:51:11 -0600 (MDT) (envelope-from scottl@samsco.org) Message-ID: <40F75D68.80400@samsco.org> Date: Thu, 15 Jul 2004 22:45:28 -0600 From: Scott Long User-Agent: Mozilla/5.0 (X11; U; FreeBSD i386; en-US; rv:1.7) Gecko/20040702 X-Accept-Language: en-us, en MIME-Version: 1.0 To: Tim Kientzle References: <40E8275B.1090008@kientzle.com> In-Reply-To: <40E8275B.1090008@kientzle.com> X-Enigmail-Version: 0.84.2.0 X-Enigmail-Supports: pgp-inline, pgp-mime Content-Type: text/plain; charset=us-ascii; format=flowed Content-Transfer-Encoding: 7bit X-Spam-Status: No, hits=0.0 required=3.8 tests=none autolearn=no version=2.63 X-Spam-Checker-Version: SpamAssassin 2.63 (2004-01-11) on pooker.samsco.org cc: re@freebsd.org cc: audit@freebsd.org Subject: Re: RFC: bsdtar in 5.3 X-BeenThere: freebsd-audit@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: FreeBSD Security Audit List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 16 Jul 2004 04:45:37 -0000 Tim Kientzle wrote: > Oliver Eikemeier wrote: > >> >> Are there any plans to do an security audit of bsdtar? This may be an >> important issue, since tar is often used running as root to unpack >> downloaded archives. > > > This is an excellent idea. Obviously, > someone other than me should lead this: > any volunteers? > > Tim > Where are we on this? Scott