Gentoo Archives: gentoo-dev

From: Duncan <1i5t5.duncan@×××.net>
To: gentoo-dev@l.g.o
Subject: [gentoo-dev] Re: Guidelines for dangerous USE flags
Date: Tue, 29 Aug 2017 10:22:10
Message-Id: pan$b2c1b$a5c3d588$9808626a$30020d4f@cox.net
In Reply to: Re: [gentoo-dev] Re: Guidelines for dangerous USE flags by Kent Fredric
1 Kent Fredric posted on Tue, 29 Aug 2017 21:21:09 +1200 as excerpted:
2
3 > On Thu, 24 Aug 2017 03:06:13 +0000 (UTC)
4 > Duncan <1i5t5.duncan@×××.net> wrote:
5 >
6 >> nrpe-command-args-SECURITY-HOLE or just nrpe-GAPING-SECURITY-HOLE
7 >
8 > That's probably excessive, if you set that USE flag globally, you
9 > deserve what you get.
10 >
11 > And if you are responsible and you know what you're getting, then you
12 > should be allowed to do that ( even though I struggle to understand why
13 > )
14
15 Good point.
16
17 (And the global-use "why" might conceivably be creating a deliberate
18 multiple-vulnerability distro for people to test their exploit abilities
19 and techniques on, like the one I remember reading about awhile back.
20 Unfortunately IDR the name, but someone will likely reply with it...)
21
22 --
23 Duncan - List replies preferred. No HTML msgs.
24 "Every nonfree program has a lord, a master --
25 and if you use the program, he is your master." Richard Stallman