Christian Riesch wrote:
> Is it a good idea to fix it like this?
Without looking at the code - *no*. This will enable exploit in web application to corrupt locking mechanism. For the same reason, web pages aren't owned by www-data.
I'll take a look at this...
Christian Riesch wrote:
> Is it a good idea to fix it like this?
Without looking at the code - *no*. This will enable exploit in web
application to corrupt locking mechanism. For the same reason, web pages
aren't owned by www-data.
I'll take a look at this...