Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 7 May 2000 02:27:23 +0400 (MSD)
From:      "Aleksandr A.Babaylov" <babolo@links.ru>
To:        asami@FreeBSD.ORG (Satoshi Asami)
Cc:        ports@FreeBSD.ORG
Subject:   Re: ports projects
Message-ID:  <200005062227.CAA22224@aaz.links.ru>
In-Reply-To: <200005021212.FAA46737@silvia.hip.berkeley.edu> from "Satoshi Asami" at "May 2, 0 05:12:53 am"

next in thread | previous in thread | raw e-mail | index | archive | help
Satoshi Asami writes:
..........
>  @  Security audit (working: kris and asami)
> 
>     I'll create a list of ports that install setuid/setgid/world
>     writable directories so Kris can use it for his ports security
>     audit project.
One of security risks is /tmp directory.
Some ports tests files created in /tmp not to be a symlink,
some not tests.
Enhansment is individual TMPDIRs in common /tmp
bin/18275 (http://www.links.ru/FreeBSD/mkinittmpdir/)
address this issue.
(I think that mkinittmpdir to be in base system)

PS
Sorry bad English

-- 
@BABOLO      http://links.ru/


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-ports" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200005062227.CAA22224>