HN2new | past | comments | ask | show | jobs | submitlogin

Why? If you control that, you likely also control PATH and others. There are lots of variables which mean game over if you have write access to them. And you also need a local fs write access to use it, so that's another step. I know it could be something to restrict, but it's really far down the list... (configuring selinux/apparmor would solve the same issue but in a more generic way)


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: