Paul Eggert <[email protected]> wrote: > On 04/19/2012 08:05 AM, Stefan Tomanek wrote: > > + if (ignore_failed_read_option || (errno == ENOENT && > > ignore_missing_option)) > > Why just ENOENT? Can't similar race conditions also > generate errno values like ELOOP, EACCESS, ENOTDIR? > > More generally, why use find + tar? The combination > seems inherently unsafe. An attacker with
This is why find(1) is in star(1) via libfind. Jörg -- EMail:[email protected] (home) Jörg Schilling D-13353 Berlin [email protected] (uni) [email protected] (work) Blog: http://schily.blogspot.com/ URL: http://cdrecord.berlios.de/private/ ftp://ftp.berlios.de/pub/schily
