non-superuser chown(2)s considered harmful

Rahul Dhesi dhesi%cirrusl at oliveb.ATC.olivetti.com
Fri Dec 14 19:12:50 AEST 1990


In <1990Dec13.192712.25225 at cbnewsk.att.com> hansen at pegasus.att.com
(Tony L. Hansen) writes:

>...the numerous security problems in BSD mail
>through the years (using setuid-root, world-writable mail area, or various
>other schemes)

Is there a security problem if the mail spool directory is world-
writable but its sticky bit is set?
--
Rahul Dhesi <dhesi%cirrusl at oliveb.ATC.olivetti.com>
UUCP:  oliveb!cirrusl!dhesi



More information about the Comp.unix.internals mailing list