Christian Holzberger | 3 Jul 2008 13:56
Picon
Gravatar

Re: GoboLinux

hi, 

On Thu, 2008-07-03 at 21:25 +1000, Lennon Cook wrote:
> Isaac Dupree <id <at> isaac.cedarswampstudios.org> wrote:
> > it might have security implications for multiuser setups, where
> > another user can influence which version of a dependency is chosen...
> This would only really be a problem if untrusted users modify what gobo 
> considers the 'Current' version. If that is possible, then you have
> bigger problems than 0launch making a poor choice. 
> In general, the distro-integration code should be able to trust the
> distro's tools to maintain sanity.
> 

yes everything that is installed to /Programs is trusted, because it was
the admin who installed it there using gobos pkg tools or Compile. 
so this ins't an issue.

> -------------------------------------------------------------------------
> Sponsored by: SourceForge.net Community Choice Awards: VOTE NOW!
> Studies have shown that voting for your favorite open source project,
> along with a healthy diet, reduces your potential for chronic lameness
> and boredom. Vote Now at http://www.sourceforge.net/community/cca08
> _______________________________________________ Zero-install-devel mailing list
Zero-install-devel <at> lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/zero-install-devel

-------------------------------------------------------------------------
Sponsored by: SourceForge.net Community Choice Awards: VOTE NOW!
Studies have shown that voting for your favorite open source project,
along with a healthy diet, reduces your potential for chronic lameness
and boredom. Vote Now at http://www.sourceforge.net/community/cca08

Gmane