Re: More into /etc/rc.d/jail

From: Thordur I. Bjornsson <thib_at_mi.is>
Date: Fri, 12 Aug 2005 18:22:31 +0000
On Wed, 10 Aug 2005 00:08:09 +0200
"Simon L. Nielsen" <simon_at_FreeBSD.org> wrote:

> On 2005.08.09 23:30:26 +0200, Stefan Bethke wrote:
> 
> > Am 09.08.2005 um 21:10 schrieb drvince_at_Safe-mail.net:
> [...]
> > 	sed -e 's/#.*$//' <${mdconfig_conf} |grep -v '^[[:space:]]*$'
> > 	>/tmp/mdconfig.$$
> 
> Try searching the web for "temporary file symlink attack"... (hint:
> creating temorary files like that is bad, use mktemp).
> 
> -- 
> Simon L. Nielsen
> 
I just like to point out the 'nosymfollow' mount option. Good stuff :)

-- 
Thordur I.	<bzthib_at_gmail.com>
Humppa!
Received on Fri Aug 12 2005 - 16:22:33 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:38:41 UTC