rdiff-backup-bugs
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Rdiff-backup-bugs] [bug #14209] Security: --restrict option lets throug


From: Ben Escoto
Subject: [Rdiff-backup-bugs] [bug #14209] Security: --restrict option lets through some file statting and dir listing
Date: Wed, 17 Aug 2005 22:18:59 -0700
User-agent: Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv:1.7.11) Gecko/20050730 Fedora/1.7.11-1

URL:
  <http://savannah.nongnu.org/bugs/?func=detailitem&item_id=14209>

                 Summary: Security: --restrict option lets through some file
statting and dir listing
                 Project: rdiff-backup
            Submitted by: bescoto
            Submitted on: Wed 08/17/05 at 22:18
                Category: None
                Severity: 3 - Normal
              Item Group: None
                  Status: None
                 Privacy: Public
             Assigned to: None
             Open/Closed: Open

    _______________________________________________________

Details:

Try:

rdiff-backup -v9 --remote-schema '%s' indir 'rdiff-backup --server --restrict
xxxx'::outdir

will allow a stat on outdir before it exits (apparently on a mkdir).







    _______________________________________________________

Reply to this item at:

  <http://savannah.nongnu.org/bugs/?func=detailitem&item_id=14209>

_______________________________________________
  Message sent via/by Savannah
  http://savannah.nongnu.org/





reply via email to

[Prev in Thread] Current Thread [Next in Thread]