[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: overwrite any file with updatedb

On 03 Mar 1998 12:06:08 -0600, Rob Browning wrote: 

>Bryan Andregg <bandregg@redhat.com> writes:
>> >I think the only way to really fix this is to patch sort, so that it
>> >doesn't create files with easy-to-predict names. See "man 3 tmpfile" for a
>> >good hint on this.
>> Amazingly enough I also said that we would be doing this. Did you read my 
>> message at all?
>That's a solution?  Sounds like Russian Roulette.  It narrows the
>window if danger tremendously, but doesn't eliminate it.  There must
>be a better answer.

The solution is not to patch to make harder to predict file names but to 
create those files with mkstemp instead of mktemp. Sorry I wasn't more clear 
in the first place.

                Bryan C. Andregg * <bandregg@redhat.com> * Red Hat Software

"Donnie were much more 'user-friendly'. May be you selective
       about friends:-)" -- Levente Farkas

"Hey, wait a minute, you clowns are on dope!"
	-- Owen Cheese in 'Shakes the Clown'

TO UNSUBSCRIBE FROM THIS MAILING LIST: e-mail the word "unsubscribe" to
debian-devel-request@lists.debian.org . 
Trouble?  e-mail to templin@bucknell.edu .

Reply to: