Re: [Rpmrebuild-project] [PATCH] Ensure that temporary directory is cleaned up
rpmrebuild build packages from modified installed packages
Brought to you by:
gerbier
From: Christopher F. <me...@cg...> - 2005-05-27 21:05:10
|
On Fri, May 27, 2005 at 10:32:57AM -0700, Hal Wine wrote: >Valery Reznic wrote, around 05/27/2005 09:17 AM: >>>Depending on original ownership & permissions, mode >>>700 still leaves a >>>race condition, as you're granting executable >>>permission to files which >>>may not have had them before. >> >>I can't see any race here: executable permission >>granted only for files/directories owner, noone else >>cat use it.. > >You are likely right. I've grown wary of subtleties of symlink attacks >and just try to avoid having anything executable :) What kind of symlink attacks are going to happen in a directory which is about to be removed? cgf |