Possible security problem, need information...

Sean Eric Fagan sef at kithrup.COM
Wed Mar 20 05:42:16 AEST 1991


In article <1991Mar19.151145.11208 at decuac.dec.com> mjr at hussar.dco.dec.com (Marcus J. Ranum) writes:
>>"ls -ld /" is "drwxrwxrwt".
>	mv /bin /...

Won't work. Notice the sticky-bit is set on /.  That means you cannot delete
or rename files that you do not own.  You can create new files and
directories in /, but that's about it.  So it's less insecure than it
appears.

-- 
Sean Eric Fagan  | "I made the universe, but please don't blame me for it;
sef at kithrup.COM  |  I had a bellyache at the time."
-----------------+           -- The Turtle (Stephen King, _It_)
Any opinions expressed are my own, and generally unpopular with others.



More information about the Comp.unix.admin mailing list