Thanks, I'm glad to hear you are reconsidering this. I might put it in the tmux FAQ as well.
On Wed, Apr 13, 2011 at 09:51:00AM +0200, Karl Ferdinand Ebert wrote: > Hello Nicholas, > > On Wed, Apr 13, 2011 at 12:31 AM, Nicholas Marriott > <[1]nicholas.marri...@gmail.com> wrote: > > Hi > > Not to say I told you so or anything, but this might be a good time to > reiterate that doing this is a bad idea: the minor inconvenience it > prevents (easily avoided by the user with either tmux -S or by setting > TMPDIR) is much less of a potential problem than running with elevated > privileges. > > Romain and I are about to change the behaviour and drop the privileges > completely. > Maybe at the end it will be only setting a proper TMPDIR or having a note > for the users to point out to how to use 'tmux -S'. > I should have considered this in the first place. > > Now I'm going to have to spend at least some of my time saying "no, not > tmux, Debian security problem"... > > As this is my fault for having introduced the modifcations I apologize > deeply for wasting your time. > For the record Ubuntu is affected too but not Fedora which has a seperate > group 'tmux'. > > Best regards, > > Ferdinand > > References > > Visible links > 1. mailto:nicholas.marri...@gmail.com -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org