Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 12 Aug 2005 18:22:31 +0000
From:      "Thordur I. Bjornsson" <thib@mi.is>
To:        freebsd-current@freebsd.org
Subject:   Re: More into /etc/rc.d/jail
Message-ID:  <20050812182231.2c94c616.thib@mi.is>
In-Reply-To: <20050809220809.GD928@zaphod.nitro.dk>
References:  <N1-uLBXxM-zn8@Safe-mail.net> <96153776-0BE4-456F-B573-042E84730DFE@lassitu.de> <20050809220809.GD928@zaphod.nitro.dk>

next in thread | previous in thread | raw e-mail | index | archive | help
On Wed, 10 Aug 2005 00:08:09 +0200
"Simon L. Nielsen" <simon@FreeBSD.org> wrote:

> On 2005.08.09 23:30:26 +0200, Stefan Bethke wrote:
> 
> > Am 09.08.2005 um 21:10 schrieb drvince@Safe-mail.net:
> [...]
> > 	sed -e 's/#.*$//' <${mdconfig_conf} |grep -v '^[[:space:]]*$'
> > 	>/tmp/mdconfig.$$
> 
> Try searching the web for "temporary file symlink attack"... (hint:
> creating temorary files like that is bad, use mktemp).
> 
> -- 
> Simon L. Nielsen
> 
I just like to point out the 'nosymfollow' mount option. Good stuff :)

-- 
Thordur I.	<bzthib@gmail.com>
Humppa!



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20050812182231.2c94c616.thib>