Nico, On Tuesday 23 October 2007 10:51, you wrote: > NOONE SAID THERE IS ANY WEBCONTENT STORED IN THERE, CAN YOU > PLEASE JUST READ UP WHAT A SYMLINK ATTACK IS? THANKS! > > This is the last mail from my side as long as you ignore > what I wrote in previous mails.
I understand your frustration (that so many packages have the same security problems over and over again), but there is no need to yell at someone. As I see it, Sven is perfectly willing and able to fix issues in his code, it just seems to me, that he doesnt understand symlink attacks, probably because he never heard about them. The solution to make him understand this, is not to yell at him and stop explaining, but rather continue explaining in a friendly way. Sven, please ignore Nicos tone and have a look at http://en.wikipedia.org/wiki/Symlink_race :-) Thanks & regards & happy hacking, Holger
pgpEFXvLfhTvT.pgp
Description: PGP signature