Ian Jackson <ijack...@chiark.greenend.org.uk> wrote:
[...]
> Right.  It should probably also refuse to read filenames matching
> .* #* *# *~ *.tmp at the very least.  

> You wouldn't want to edit your exim.conf to get rid of a security
> problem and find that the attacker could just tell it to use the old
> file !

Hello,
The current status (GIT head) simply adds a file which contains a *list*
of trusted configuration files instead of a prefix.

cu andreas

-- 
`What a good friend you are to him, Dr. Maturin. His other friends are
so grateful to you.'
`I sew his ears on from time to time, sure'


-- 
To UNSUBSCRIBE, email to debian-devel-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Archive: http://lists.debian.org/c45vt7-d9v....@argenau.downhill.at.eu.org

Reply via email to