Thanks for the review Flavio, I applied this to master and brach-2.5
On 22/02/2016 20:29, "Flavio Leitner" wrote:
>On Mon, 22 Feb 2016 11:43:23 -0800
>Daniele Di Proietto wrote:
>
>> This check prevents an obvious way for a vhost-user socket to escape
On Mon, 22 Feb 2016 11:43:23 -0800
Daniele Di Proietto wrote:
> This check prevents an obvious way for a vhost-user socket to escape the
> intended directory.
>
> There might be other ways to escape the directory (none comes to mind at
> the moment), but this is a
This check prevents an obvious way for a vhost-user socket to escape the
intended directory.
There might be other ways to escape the directory (none comes to mind at
the moment), but this is a problem that should be properly solved by
mandatory access control.
A similar check is done for a