Modified: trunk/base/src/port1.0/portsandbox.tcl (100363 => 100364)
--- trunk/base/src/port1.0/portsandbox.tcl 2012-12-09 15:04:55 UTC (rev 100363)
+++ trunk/base/src/port1.0/portsandbox.tcl 2012-12-09 17:09:47 UTC (rev 100364)
@@ -83,9 +83,10 @@
}
set portsandbox_profile "(version 1) (allow default) (deny file-write*) \
-(allow file-write-data (literal \"/dev/null\") (literal \"/dev/dtracehelper\") \
-(literal \"/dev/tty\") (literal \"/dev/stdin\") (literal \"/dev/stdout\") \
-(literal \"/dev/stderr\") (regex #\"^/dev/fd/\")) (allow file-write* \
+(allow file-write-data (literal \"/dev/null\") (literal \"/dev/zero\") \
+(literal \"/dev/dtracehelper\") (literal \"/dev/tty\") \
+(literal \"/dev/stdin\") (literal \"/dev/stdout\") (literal \"/dev/stderr\") \
+(regex #\"^/dev/fd/\")) (allow file-write* \
(regex #\"^(/private)?(/var)?/tmp/\" #\"^(/private)?/var/folders/\"))"
foreach dir $allow_dirs {