Re: security-problem i 1.2-pre3



On Sat, Sep 08, 2001 at 04:56:38PM +0200, Reychman Felix wrote:
> When killing Balsa, the temp files in /tmp called 
> 	mutt-morricone-xxx-yyy
> are not removed. They have a permissions 600, but root will still be able
> to read them.

You're right, they should be removed.  It's messy.  But it's not a
security problem. Don't deceive yourself: root can easily read all
your mail.  You should never read anything private on a machine where
you don't trust the administrators.

(It would be a very simple job for them to get your gpg password, for
example, if you use gpg on that machine).

Jules




[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]