Re: named (bind)
On Sun, 14 Nov 1999, Daniel Roesen wrote:
droese >The published NXT exploit breaks chroot for at least Linux/Intel,
droese >Solaris/SPARC, FreeBSD 3.2 and OpenBSD 2.5.
from what i saw from the post on bugtraq it still wont do much if the
server is not being run as root ? mine is run as user/group named, under a
securelinux kernel, if its not in gid 0 its pretty restricted in terms of
power.
nate
----------------------------------------[mailto:aphro@aphroland.org ]--
Vice President Network Operations http://www.firetrail.com/
Firetrail Internet Services Limited http://www.aphroland.org/
Everett, WA 425-348-7336 http://www.linuxpowered.net/
Powered By: http://comedy.aphroland.org/
Debian 2.1 Linux 2.0.36 SMP http://yahoo.aphroland.org/
-----------------------------------------[mailto:aphro@netquest.net ]--
8:54am up 86 days, 20:26, 1 user, load average: 1.43, 1.45, 1.51
Reply to: