On 29 Mar, David Garamond wrote:

> Am I right to think that CGI::Session::File driver is insecure? It 
> creates the session files with a hardcoded 0644 permission, while the 
> synopsis/examples tell us to store the files in "/tmp".

You're right, the chmod mode is hard-coded.
Do we desire a patch?

-- 
Steven Schubiger 
  <[EMAIL PROTECTED]>

-- 
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
<http://learn.perl.org/> <http://learn.perl.org/first-response>


Reply via email to