More into /etc/rc.d/jail

Simon L. Nielsen simon at FreeBSD.org
Tue Aug 9 22:08:11 GMT 2005


On 2005.08.09 23:30:26 +0200, Stefan Bethke wrote:

> Am 09.08.2005 um 21:10 schrieb drvince at Safe-mail.net:
[...]
> 	sed -e 's/#.*$//' <${mdconfig_conf} |grep -v '^[[:space:]]*$' >/tmp/mdconfig.$$

Try searching the web for "temporary file symlink attack"... (hint:
creating temorary files like that is bad, use mktemp).

-- 
Simon L. Nielsen
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-current/attachments/20050810/8a72dc2d/attachment.bin


More information about the freebsd-current mailing list