On Thu, Sep 29, 2005 at 02:00:12AM +0200, Thomas Prokosch wrote:
 $RKHUNTER --cronjob --report-warnings-only > /tmp/$$
If I am not mistaken this command poses a security risk for
the system because it allows a symlink attack.

Definately, it should be fixed ASAP.
It doesn't look like it's in stable though, so not DSA will be needed.

Mike Stone


--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to