This is a discussion on Re: small patch to etc/skel/dot.cshrc within the mailing.openbsd.tech forums, part of the OpenBSD category; --> On Tue, 2004-02-17 at 18:09:38 -0500, James Larkby-Lahet proclaimed... > This is not a security issue, if that what ...
| |||||||
| FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
| ||||
| On Tue, 2004-02-17 at 18:09:38 -0500, James Larkby-Lahet proclaimed... > This is not a security issue, if that what you are thinking, because > the paths are searched in order. all the normal binary directories are > listed first, so no one can slip you a trojaned 'ls' or whatever in the > current directory. Completely removing '.' from your path is an > overkill solution. and annoying :-) Paranoid, yes. Annoying? I'd beg to differ. I've seen several sysadmin's accidentally screw up the order and put "." further up the PATH chain. How about adding just a little commented mark educating users to leave it at the end? I'll quit beating a dead horse now either way. Just wasn't sure if it was something overlooked |