[Debian GNUstep maintainers] Bug#741441: gnustep-base-runtime: gdomap does chroot("/tmp")

Ansgar Burchardt ansgar at debian.org
Fri Jul 25 09:00:29 UTC 2014


On 07/24/2014 22:55, Yavor Doganov wrote:
> On Wed, Mar 12, 2014 at 03:02:38PM +0100, Ansgar Burchardt wrote:
>> gdomap chroots to /tmp "as another level of paranoia". However if
>> you are paranoid, you really want to chroot to an empty,
>> non-writable directory, not to a world-writable one containing
>> random files.
> 
> Thanks for the report.  Do you have a suggestion how to handle this
> issue?  Upstream writes:

I would just create an empty directory in /run (optionally via
tmpfiles.d) or ship one in /usr/share/gdomap/empty-directory-for-chroot
(or so) in the package itself.

Ansgar



More information about the pkg-GNUstep-maintainers mailing list