Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 17 Nov 1999 23:41:52 -0800 (PST)
From:      Alex Zepeda <jazepeda@pacbell.net>
To:        Andreas Klemm <andreas@klemm.gtn.com>
Cc:        David Greenman <dg@root.com>, Matthew Dillon <dillon@apollo.backplane.com>, Sean Eric Fagan <sef@kithrup.com>, current@FreeBSD.ORG
Subject:   Re: PATCH for testing
Message-ID:  <Pine.BSF.4.10.9911172341110.397-100000@localhost>
In-Reply-To: <19991118071602.A24640@titan.klemm.gtn.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Thu, 18 Nov 1999, Andreas Klemm wrote:

> On Mon, Nov 15, 1999 at 05:44:12PM -0800, David Greenman wrote:
> >    I agree that we need to get rid of 'e' and any other options that allow
> > reading another process's environment.
> 
> I think it would be sufficient, to allow only root to use the 'e' option.
> There is no need to get rid of it entirely. Then other utility would have
> to go as well (tcpdump, ...).

Or perhaps restricting -U to root only?  Since -e w/out -U isn't harmful,
no?

- alex



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-current" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.10.9911172341110.397-100000>