[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Unrestrict chown?



On Wed, 10 Dec 2008 12:20:33 +1100
Alex Samad <alex@samad.com.au> wrote:

> On Tue, Dec 09, 2008 at 04:56:53PM -0500, Celejar wrote:
> > On Tue, 9 Dec 2008 13:53:47 -0800 (PST)
> > Arc Roca <tonroca@yahoo.com> wrote:
> > 
> > > That would be a terrible thing to happen, that any one could appropriate your files to themselves.
> > 
> > I've been wondering about this; what would be the problem with the OS
> > allowing user1 to chown his files to user2, assuming we don't allow
> > this to occur with suid executables, of course.
> 
> umm
> 
> chown root <some bad file>

Harmless unless root chooses to run it (in which case it would be a
problem regardless of which user he chown's it to), but I agree that
it's a problem waiting to happen.

Celejar
--
mailmin.sourceforge.net - remote access via secure (OpenPGP) email
ssuds.sourceforge.net - A Simple Sudoku Solver and Generator


Reply to: