A security hole

00704a-Liber nevin1 at ihlpf.ATT.COM
Thu Mar 31 10:19:30 AEST 1988


In article <544 at fig.bbn.com> rsalz at bbn.com (Rich Salz) writes:
.Every single program that is subject to the "IFS" trick can be
.protected by written a wrapper that sets the environment properly,
.then calls the real program.

But what stops the user from bypassing the wrapper and calling the real
program directly?
-- 
 _ __			NEVIN J. LIBER	..!ihnp4!ihlpf!nevin1	(312) 510-6194
' )  )				"The secret compartment of my ring I fill
 /  / _ , __o  ____		 with an Underdog super-energy pill."
/  (_</_\/ <__/ / <_	These are solely MY opinions, not AT&T's, blah blah blah



More information about the Comp.bugs.sys5 mailing list