Skip to content

Comment on /bin/sh: the biggest Unix security loophole (1984) [pdf]parent

Comments

I figured most package managers (brew, pip, nix, npm, etc.) are not actually one of the few Linux distro package managers. You listed them almost exhaustively after all (excepting pacman).

Right but as I said from the context it was clear he was talking about distro package managers, not language package managers.

Nix requires root (at least by default). Brew I'll give you - I didn't know you can use it on Linux. Do people actually do that enough that it works reliably?

I don't think that was clear. If they really meant that, which I honestly doubt because it would be so obviously false, then I agree with you.

We love to praise Unix, but it wasn't built for modern multi-user use. FUSE was an after-thought. So were package managers, and they got added, but they require root.

Clearly talking about OS level package managers.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.