Index | Thread | Search

From:
"Theo de Raadt" <deraadt@openbsd.org>
Subject:
Re: diff httpd: avoid misleading syslog warnings
To:
tech@openbsd.org
Date:
Tue, 13 Feb 2024 06:40:16 -0700

Download raw body.

Thread
  • Theo de Raadt:

    diff httpd: avoid misleading syslog warnings

  • access() is the system call noone should call, because it always
    introduces a TOCTOU problem.  Only introduce a TOCTOU problem if
    there is no other way.
    
    
    
  • Theo de Raadt:

    diff httpd: avoid misleading syslog warnings