[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: A setuid bash doesn't give up root.



>>>>> "Karl" == Karl M Hegbloom <psu25682@odin.cc.pdx.edu> writes:

    Karl>  Perhaps we should have a policy that says all of our shells
    Karl> should follow the Bash behaviour?

This would help a *tiny* bit, but there are many many programs other
than shells that will wreak havoc if they're made set-uid. Emacs, or
vi, or netscape.. well, you get the drift.

-- 
Brought to you by the letters D and M and the number 18.
"Bill Gates is a talented evil man."
Debian GNU/Linux maintainer of Gimp and GTK+ -- http://www.debian.org/
I'm on FurryMUCK as Che, and EFNet/Open Projects IRC as Che_Fox.


Reply to: