Date: Sun, 7 May 2000 02:27:23 +0400 (MSD) From: "Aleksandr A.Babaylov" <babolo@links.ru> To: asami@FreeBSD.ORG (Satoshi Asami) Cc: ports@FreeBSD.ORG Subject: Re: ports projects Message-ID: <200005062227.CAA22224@aaz.links.ru> In-Reply-To: <200005021212.FAA46737@silvia.hip.berkeley.edu> from "Satoshi Asami" at "May 2, 0 05:12:53 am"
next in thread | previous in thread | raw e-mail | index | archive | help
Satoshi Asami writes: .......... > @ Security audit (working: kris and asami) > > I'll create a list of ports that install setuid/setgid/world > writable directories so Kris can use it for his ports security > audit project. One of security risks is /tmp directory. Some ports tests files created in /tmp not to be a symlink, some not tests. Enhansment is individual TMPDIRs in common /tmp bin/18275 (http://www.links.ru/FreeBSD/mkinittmpdir/) address this issue. (I think that mkinittmpdir to be in base system) PS Sorry bad English -- @BABOLO http://links.ru/ To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-ports" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200005062227.CAA22224>