From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from lists.gentoo.org (pigeon.gentoo.org [208.92.234.80]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by finch.gentoo.org (Postfix) with ESMTPS id F312E138334 for ; Sat, 4 Jan 2020 18:41:12 +0000 (UTC) Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id C68ADE0957; Sat, 4 Jan 2020 18:41:09 +0000 (UTC) Received: from smtp.gentoo.org (smtp.gentoo.org [140.211.166.183]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by pigeon.gentoo.org (Postfix) with ESMTPS id 36ED1E0953 for ; Sat, 4 Jan 2020 18:41:09 +0000 (UTC) Received: from linux1.home (cpe-70-124-168-176.austin.res.rr.com [70.124.168.176]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) (Authenticated sender: williamh) by smtp.gentoo.org (Postfix) with ESMTPSA id 322D334DD5D for ; Sat, 4 Jan 2020 18:41:08 +0000 (UTC) Received: (nullmailer pid 11096 invoked by uid 1000); Sat, 04 Jan 2020 18:41:05 -0000 Date: Sat, 4 Jan 2020 12:41:05 -0600 From: William Hubbs To: gentoo-dev@lists.gentoo.org Subject: Re: [gentoo-dev] Vanilla sources Message-ID: <20200104184105.GB11050@linux1.home> Mail-Followup-To: gentoo-dev@lists.gentoo.org References: <3197490.ugo6OjCCXa@daneel.sf-tec.de> <1794534.0xJHuh4lKC@crazyhorse> <19015309.XG3PSQ8cOu@daneel.sf-tec.de> <5537134e-0412-862d-e105-94c678229b46@gentoo.org> <2dd351b3-0f71-4960-ffde-2f5a99ab161d@gentoo.org> <9b48db99-19dc-617b-c0d4-ffa0216b43be@gentoo.org> <5258410f-a8a4-38bf-4885-c1d4265b40f5@gentoo.org> Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-dev@lists.gentoo.org Reply-to: gentoo-dev@lists.gentoo.org X-Auto-Response-Suppress: DR, RN, NRN, OOF, AutoReply MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="gj572EiMnwbLXET9" Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.10.1 (2018-07-13) X-Archives-Salt: 9e7e571d-8b72-4066-89e0-52a61edf04fa X-Archives-Hash: 2435df4ddce6b114448b1526922b8954 --gj572EiMnwbLXET9 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Fri, Jan 03, 2020 at 09:55:31AM -0500, Michael Orlitzky wrote: > On 1/3/20 9:52 AM, Michael Orlitzky wrote: > >=20 > > But here we are. Do we make OpenRC Linux-only and steal the fix from > > systemd? Or pretend to support other operating systems, but leave them > > insecure? > >=20 >=20 > Or the gripping hand: rewrite opentmpfiles in C, so that it's only as > insecure as checkpath. There is a pr open for opentmpfiles for this, and we are also discussing writing it in rust. Thanks, William --gj572EiMnwbLXET9 Content-Type: application/pgp-signature; name="signature.asc" Content-Description: Digital signature -----BEGIN PGP SIGNATURE----- iF0EARECAB0WIQTVeuxEZo4uUHOkQAluVBb0MMRlOAUCXhDcQQAKCRBuVBb0MMRl OK4UAJ4t21bzBF/aRLcrSQ66e1mo7WHwCwCeISpgBRSvzVnShWdzPGALebKnmfw= =z+On -----END PGP SIGNATURE----- --gj572EiMnwbLXET9--