On 16 Mar 2012, at 3:50 PM, Nick Kew wrote: > Yes, there is harm. Exposing filesystem information will bring > in a flood of vulnerability reports. Remember the kerfuffle we > had about inodes appearing in etags?
ETags are seen by clients, we're talking about a message in error_log. Since when did writing stuff to the error_log become a vulnerability? Regards, Graham --
smime.p7s
Description: S/MIME cryptographic signature
