From owner-freebsd-questions@FreeBSD.ORG Fri Jan 30 00:36:27 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id C103516A4CE for ; Fri, 30 Jan 2004 00:36:27 -0800 (PST) Received: from asarian-host.net (mail.asarian-host.net [194.109.160.70]) by mx1.FreeBSD.org (Postfix) with ESMTP id CF25743D2D for ; Fri, 30 Jan 2004 00:36:24 -0800 (PST) (envelope-from admin@asarian-host.net) Comments: To protect the identity of the sender, certain header fields are either not shown, or masked. Anonymous email accounts can be requested by filling in the appropriate form at: https://asarian-host.net/cgi-bin/signup.cgi Received: (from root@localhost) by mail.asarian-host.net (8.12.11/8.12.11) id i0U8aNBf009746 for freebsd-questions@freebsd.org; Fri, 30 Jan 2004 09:36:23 +0100 (CET) (envelope-from admin@asarian-host.net) From: Mark Received-SPF: pass (asarian-host.net: domain of admin@asarian-host.net designates sender IP as SASL permitted sender) Message-Id: <200401300836.I0U8AM2Y009736@asarian-host.net> Date: Fri, 30 Jan 2004 08:36:22 GMT X-Authenticated-Sender: admin@asarian-host.net X-Trace: 8kheSkXQV2awMEI4LY8AqiyHo1IEejxiNDliYtpmd2IO1br4VqOR9vpauccJBSKIx++wgI+fai4U+IWEWchwtQ== X-Complaints-To: abuse@asarian-host.net X-Abuse-Info: Please be sure to forward a copy of ALL headers, otherwise we are unable to process your complaint Organization: Asarian-host To: , References: MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit X-Priority: 3 X-MSMail-Priority: Normal X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165 X-Auth: Asarian-host PGP signature iQEVAwUAQBoXhzFqW1BleBN9AQEKoQf+JHbnoNCcc9c2Tx5OvuTN24tme7rI41jj E5efv5Hh4A2rfBGWjFtlV5044sFenuH8UShqcUZzYJUIUwJxF120QETjZXEcbgqd gmQ+vaeDLtFfnNebmq1/03WY4EVyT3sjar43XP2AOICSvDiL/NhYD6hQgrje7z2A Lf/MqOOaRUYt3DRS07cYGhuYuKl5eZcu0eQ1SRpxQ2W70irzkrgGOuK/rGM8o5Gc 0YvJLtxuNdSZk1ZToQ+E2uZIRXJnpZIktH3h4BZKkB3+yY3kDu59gkn4ML2ZIx6i GLt/Gfoy0pXDjtJUElbYTqev4brKQFh0y/P0BrbcyAXX5WZwsTwNlg== =S/j+ Subject: Re: i found something ugly about freeBSD X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 30 Jan 2004 08:36:27 -0000 ----- Original Message ----- From: To: Sent: Friday, January 30, 2004 3:01 AM Subject: i found something ugly about freeBSD > Am probably wrong i hope. Yes, you are. :) > ... but mysqld creates a file call /tmp/mysql.sock, > but this file got to be 777??? Yeah, well, that's the general idea; everybody can read/write to the mysqld server socket: from "nobody" (web server) to root. > ...i loging with a other user and call a rm /tmp/mysql.sock Set the sticky bit (+t) on /tmp/, and only the owner of the mysql socket will be able to delete it. - Mark