Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Daemons that care about security setuid temporarily before opening a file and then setuid back


That doesn't always fix it. An attacker can race you to make you write something in a place you didn't intend or expect unless the application is incredibly carefully written.

And by "incredibly" I mean beyond the scope of human endeavour :-).




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: