RFC: bsdtar in 5.3

Giorgos Keramidas keramida at freebsd.org
Fri Jul 16 01:20:48 PDT 2004


On 2004-07-15 22:45, Scott Long <scottl at samsco.org> wrote:
>Tim Kientzle wrote:
>>Oliver Eikemeier wrote:
>>>Are there any plans to do an security audit of bsdtar? This may be
>>>an important issue, since tar is often used running as root to
>>>unpack downloaded archives.
>>
>>This is an excellent idea.  Obviously, someone other than me should
>>lead this: any volunteers?
>
> Where are we on this?

I thought of replying positively to Tim's initial post but not as a
"leader" figure of any sort.  If I could help by researching about test
scenarios, designing some and/or running them I'd be glad to assist in
any way I can though.

Giorgos



More information about the freebsd-audit mailing list