Findsuid source (Re: Security an

emks at uokvax.UUCP emks at uokvax.UUCP
Wed Jan 30 07:45:00 AEST 1985


Another problem with having a find-suid-programs program that runs based
on crontab entries is that anyone can see when the find-suid-programs
program is going to run next, and make their moves on that basis.

Perhaps /usr/lib/crontab should be mode 600...  But then one could always
check the last access time of the program, or look up the per-proc accounting.

		kurt



More information about the Comp.unix.wizards mailing list