Gentoo Archives: gentoo-dev

From: Sven Vermeulen <sven.vermeulen@××××××.be>
To: gentoo-dev@g.o
Subject: Re: [gentoo-dev] /var/tmp world rwx?
Date: Sat, 04 Jan 2003 09:25:03
Message-Id: 20030104092301.GA1335@Daikan.pandora.be
In Reply to: [gentoo-dev] /var/tmp world rwx? by "Kevin N. Carpenter"
1 On Fri, Jan 03, 2003 at 04:42:31PM -0600, Kevin N. Carpenter wrote:
2 > That broke emerge. The "noexec" option prevents any builds from
3 > working. That made me check one of my unmodified gentoo systems where I
4 > spotted that /var/tmp was world read/execute. That's a security problem.
5
6 Besides the other answers in this thread, you could use quota's so that any
7 user can use maximum 1 bytes of space in /var/tmp, except for root ofcourse.
8
9 ANd euh, don't use tmpfs for /var/tmp if you are not planning on having a
10 seperate /var/tmp/portage, I know you know it, but perhaps other ppl that are
11 diagonally reading this thread don't :)
12
13 Wkr,
14 Sven Vermeulen
15
16 --
17 Fighting for peace is like fucking for virginity.