should Unix refuse to execute writable binaries?

Ernest Hua ernest at pegasus.dsg.tandem.com
Sun Mar 3 05:36:39 AEST 1991


-------------------------------------------------------------------------------
Actually the real question is:

Should the Unix kernel refuse to execute binaries (or scripts) that are ...

    1.  setuid-ed plus group and/or world writable?
    2.  setgid-ed plus world writable?

It seems like a simple check that should be help ensure a more secure Unix.

Please E-mail replies and I will post a summary.
-------------------------------------------------------------------------------
Ernest Hua
Tandem Computers
ernest at tandem.com
408-285-5580



More information about the Comp.unix.wizards mailing list