Possible security problem, need information..

The MaD ScIeNTiSt navarra at casbah.acns.nwu.edu
Wed Mar 20 15:47:28 AEST 1991


>However, if the sticky bit is unimplemented, or is implemented half
>heartedly, then you can move files you own on top of files someone else
>owns (even though you may not be able to rm files owned by others).

   Wonder what would happen if you did something like moving core on top
   of /.cshrc or /.login?

   how bout ln core .cshrc?

   how bout:  cp /dev/zero /  (is that possible i wonder?)
              ln zero .cshrc  Sounds particulary nasty. 

   This is only a speculation, not an exhibition so please please --   
   no wagering!

-- 
>From the Lab of the MAd ScIenTisT....

navarra at casbah.acns.nwu.edu




More information about the Comp.unix.admin mailing list