Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 10 Mar 2003 10:59:52 -0800 (PST)
From:      Doug Barton <DougB@FreeBSD.org>
To:        dslb@tiscali.dk
Cc:        hackers@freebsd.org
Subject:   Re: Insecure PHP installation?
Message-ID:  <20030310105901.L11058@znfgre.tberna.bet>
In-Reply-To: <3E4A9619000044DD@cpfe2.be.tisc.dk>
References:  <3E4A9619000044DD@cpfe2.be.tisc.dk>

next in thread | previous in thread | raw e-mail | index | archive | help
On Mon, 10 Mar 2003 dslb@tiscali.dk wrote:

> Hi all
>
> I know PHP is not in the base system, but I thought I could ask here anyway.

You should have asked this on freebsd-ports@freebsd,org, and cc'ed the PHP
maintainer, FYI.

> I have installed PHP on my FreeBSD 4.7 computer and did a "find / -perm
> +0002". I could see that /usr/local/bin/pear is a script and world writable,
> isn't that a little dangerous?

That's definitely bad, yes. Please use send-pr to file a problem report
about this.

Doug

-- 

    This .signature sanitized for your protection

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-hackers" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030310105901.L11058>