[Patch]: Fixing the PROCESS_DUP_HANDLE security hole (part 1).

Christopher Faylor cgf-no-personal-replies-please@cygwin.com
Thu Nov 6 15:32:00 GMT 2003


On Wed, Nov 05, 2003 at 08:02:01PM -0500, Pierre A. Humblet wrote:
>Ping? 
>
>This has been pending for a while. See also
><http://cygwin.com/ml/cygwin-patches/2003-q4/msg00003.html>

I haven't forgotten about it.  Unfortunately, in quick scans, the
implementation gives me heartburn.  That doesn't mean that this isn't
the correct way to do this, it just means that my initial gut feeling
is negative.

So, I haven't had much time to give this the attention it deserves and
either accept it or offer another alternative.  If it was in anything
other than tty code, it probably wouldn't have languished this long.



More information about the Cygwin-patches mailing list