Please see this post at Apaches mailing list: [patch] Fix cross-user symlink race condition vulnerability http://www.gossamer-threads.com/lists/apache/dev/419501
I wonder if that "symlink-protection.patch" is for the same thing as DirectAdmin harden-symlinks-patch option number 2? http://help.directadmin.com/item.php?id=421
If the fix is for the same thing, and if it get implemented in Apache, then DirectAdmin harden-symlinks-patch might be redundant if Apache release the fix. But please note, I don't know if the fix is for the exact same thing. Therfor I post here, maybe someone else knows?
I wonder if that "symlink-protection.patch" is for the same thing as DirectAdmin harden-symlinks-patch option number 2? http://help.directadmin.com/item.php?id=421
If the fix is for the same thing, and if it get implemented in Apache, then DirectAdmin harden-symlinks-patch might be redundant if Apache release the fix. But please note, I don't know if the fix is for the exact same thing. Therfor I post here, maybe someone else knows?