https://bugzilla.novell.com/show_bug.cgi?id=216213 judas_iscariote@shorewall.net changed: What |Removed |Added ---------------------------------------------------------------------------- Status|REOPENED |RESOLVED Component|Other |Other Product|openSUSE 10.2 |openSUSE 10.3 Resolution| |REMIND Fixed in Milestone|--- |unspecified Version|Beta 1 |Alpha 1 ------- Comment #9 from judas_iscariote@shorewall.net 2007-01-17 23:53 MST ------- Ok.let discuss the implicances of including /tmp in the open_basedir for 10.3 I personally see that as a no issue, PHP has to access the system temporary directory anyway... yes, an evil attacker can upload a rootkit to /tmp and then try to execute it (suhosin is unlikley to allow such thing btw :P) and /tmp not being mounted with "noexec" is not precisely a PHP problem... (altough I know this can be tricked too ^^) atm, it does work the way it is right now. -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is.