Reply to post: Re: I learnt to test my WHERE clauses on a DELETE with a SELECT first

Techie basks in praise for restoring workforce email (by stopping his scripting sh!tshow)

Anonymous Coward
Anonymous Coward

Re: I learnt to test my WHERE clauses on a DELETE with a SELECT first

You should have read for context and thought about why I wrote this patch for the Bugtraq security list!

It originated from a discussion regarding attacks where someone who had write access one of the directories being cleaned up (often directories where everyone has write access, like /tmp) could fool that command into deleting ANY file on the system. Both of the variants posted above are vulnerable to this, so I posted a find patch I'd written with the -delete builtin which was not vulnerable.

It isn't creeping featurism if it solves an actual problem.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon