Bug#373786: /etc/cron.daily/exim4-base should unset TMPDIR

Marc Haber mh+debian-packages at zugschlus.de
Mon Jul 3 09:06:10 UTC 2006


On Mon, Jul 03, 2006 at 11:02:57AM +0200, Tollef Fog Heen wrote:
> * Marc Haber 
> | One would have to chown 701 /tmp/user/0. Would that open a too big
> | security hole in your opinion?
> 
> I'd be somewhat unconfortable with it -- the point of pam-tmpdir is to
> have a completely private $TMP.

I understand that.

>It's probably not a security problem,
> though, as in it'll still be better than using /tmp as $TMP{,DIR}.

Is there any better possibility to solve the issue at hand?

Greetings
Marc

-- 
-----------------------------------------------------------------------------
Marc Haber         | "I don't trust Computers. They | Mailadresse im Header
Mannheim, Germany  |  lose things."    Winona Ryder | Fon: *49 621 72739834
Nordisch by Nature |  How to make an American Quilt | Fax: *49 621 72739835




More information about the Pkg-exim4-maintainers mailing list