Once upon a time, Miloslav TrmaÄ? <m...@volny.cz> said:
> We can extend the protection to all executables by a simple addition to
> redhat-rpm-config (https://bugzilla.redhat.com/show_bug.cgi?id=556897 ).
> After applying this patch, executable files in all rebuilt packages
> would not be writeable, most often using mode 0555.

Please don't take away read permission without good reason.  I have on
many occasion grepped for strings in binaries (who touches a particular
config file for example).

There is no reason to remove world-read permission on something anybody
can download from their favorite mirror.
-- 
Chris Adams <cmad...@hiwaay.net>
Systems and Network Administrator - HiWAAY Internet Services
I don't speak for anybody but myself - that's enough trouble.
-- 
devel mailing list
devel@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/devel

Reply via email to