* Justin Pryzby 

| Have you given any thought to this bug?  It seems like it would be
| easy and desirable to avoid running wget as root.  Indeed, *two* of
| the outstanding RC bugs in the months leading up to the etch release
| were security problems with wget.

If so, I don't think I would want it to run as nobody, but rather
having a special user created for this sole task, which seems rather
overkill.  Else, any other process running as nobody could subvert the
download and possibly make root run arbitrary code.

-- 
Tollef Fog Heen                                                        ,''`.
UNIX is user friendly, it's just picky about who its friends are      : :' :
                                                                      `. `' 
                                                                        `-  


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to