[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: exploring debian's users and groups



Daniel Jacobowitz wrote:
> Disk may have been a good idea at one point, but (like kmem) is
> essentially equivalent to root.  Write access to any raw device is very
> likely to lead to system compromise, via VFS bugs if nothing else. 
> Read access to kmem is a LITTLE weaker than root... but not much. 
> Especially if root ever types his password.

It seems that disk could be useful indeed, if it had no special rights
by default. Like floppy and cdrom. Dig up a spare disk, put a few users
in the group, *don't mount it*, and let them go to town with raw disk
access, baybee.

-- 
see shy jo



Reply to: