From owner-freebsd-audit Thu Nov 2 11: 3:40 2000 Delivered-To: freebsd-audit@freebsd.org Received: from mail.rpi.edu (mail.rpi.edu [128.113.100.7]) by hub.freebsd.org (Postfix) with ESMTP id 9170037B479; Thu, 2 Nov 2000 11:03:37 -0800 (PST) Received: from [128.113.24.47] (gilead.acs.rpi.edu [128.113.24.47]) by mail.rpi.edu (8.9.3/8.9.3) with ESMTP id OAA421766; Thu, 2 Nov 2000 14:03:35 -0500 Mime-Version: 1.0 X-Sender: drosih@mail.rpi.edu Message-Id: In-Reply-To: <20001102022242.A24460@citusc17.usc.edu> References: <20001102022242.A24460@citusc17.usc.edu> Date: Thu, 2 Nov 2000 14:03:33 -0500 To: Kris Kennaway , audit@FreeBSD.ORG From: Garance A Drosihn Subject: Re: sort(1) tempfile patch Content-Type: text/plain; charset="us-ascii" ; format="flowed" Sender: owner-freebsd-audit@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG Didn't we already have a fix to sort, which was to create a subdirectory under /tmp and then have sort create all of it's temp files in that subdirectory? If the files are in a correctly-permitted subdirectory, then we don't have to care what the filename-creation algorithm is (not wrt security, that is). -- --- Garance Alistair Drosehn = gad@eclipse.acs.rpi.edu Senior Systems Programmer or gad@freebsd.org Rensselaer Polytechnic Institute or drosih@rpi.edu To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-audit" in the body of the message