Ludovic Courtès e05f7c55d7
file-systems: Open files with O_CLOEXEC.
Since this code is run from PID 1, this ensures file descriptors to
sensitive files and devices are not accidentally leaked to
sub-processes.

* gnu/build/file-systems.scm (call-with-input-file): New procedure.
(mount-file-system): Use 'close-fdes' + 'open-fdes'.
2022-09-08 16:22:21 +02:00
..
2022-08-30 08:51:12 +02:00
2022-08-17 11:29:38 +02:00
2022-08-19 18:55:41 +03:00
2022-09-07 14:26:34 +02:00
2022-09-07 22:02:40 +02:00