Skip to content

Draft: HBSD: Do not authorize TIOCSTI

Loic requested to merge loic/HardenedBSD:TIOCSTI into hardened/current/master

This may seem a bit brutal but it ensures that TIOCSTI is not used for terminal command injection.

This could have an impact with several programs like mail, qemu, x11vnc, tcsh... but it seems interesting to me to try to get rid of it as OpenBSD has already done.

Signed-off-by: Loic loic.f@hardenedbsd.org

Merge request reports