Comment 4 for bug 1505184

Revision history for this message
Raghavendra D Prabhu (raghavendra-prabhu) wrote :

Note that even though https://dev.mysql.com/doc/refman/5.6/en/password-security-user.html states MYSQL_PWD as being insecure when ps can query it, at least on Linux that is not true. Non-root users cannot query /proc/$pid/environ (hence ps e) of processes which they don't own but they still can see the command-line of those processes.