Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 16 Jul 2004 11:22:59 +0300
From:      Giorgos Keramidas <keramida@freebsd.org>
To:        Scott Long <scottl@samsco.org>
Cc:        audit@freebsd.org
Subject:   Re: RFC: bsdtar in 5.3
Message-ID:  <20040716082259.GC6353@orion.daedalusnetworks.priv>
In-Reply-To: <40F75D68.80400@samsco.org>
References:  <DF07AEAE-CCE8-11D8-9FE1-00039312D914@fillmore-labs.com> <40E8275B.1090008@kientzle.com> <40F75D68.80400@samsco.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On 2004-07-15 22:45, Scott Long <scottl@samsco.org> wrote:
>Tim Kientzle wrote:
>>Oliver Eikemeier wrote:
>>>Are there any plans to do an security audit of bsdtar? This may be
>>>an important issue, since tar is often used running as root to
>>>unpack downloaded archives.
>>
>>This is an excellent idea.  Obviously, someone other than me should
>>lead this: any volunteers?
>
> Where are we on this?

I thought of replying positively to Tim's initial post but not as a
"leader" figure of any sort.  If I could help by researching about test
scenarios, designing some and/or running them I'd be glad to assist in
any way I can though.

Giorgos



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20040716082259.GC6353>