Bugtraq mailing list archives
Re: /etc/mnttab and Solaris 2.4
From: sysdfg () gsusgi1 gsu edu (Davide Gaetano)
Date: Sat, 7 Jan 1995 12:50:21 -0500 (EST)
Hi, Are there some critical programs that use the getmntent(3C) sets of functions? I ask that because under Solaris 2.4, the /etc/mnttab is like this (666): % ll /etc/mnttab -rw-rw-rw- 1 root root 409 Jan 6 13:25 /etc/mnttab
Ours is mode 644. It has to be readable for things like df to work. Only root needs to be able to write to the file, when mounting file systems, changeing quota, and such. Note, that atleast on our system, quotaon sets the mode to 600 and this break the df command (and quota -v for the user if memory serves) Anyways, 644 should make all the user commands happy, without letting people muck up the file on you.
The man says: The file mnttab resides in /etc and contains information about devices that are currently mounted. mnttab is read by programs using the routines described in getmntent(3C). So if there is any critical program using this file, it can be subverted. rite? Phil. --Philippe Langlois -- Net & Unix Admin @ World Net, Paris, France. < Email: phil () worldnet sct fr "after all, we're all alike!" < Internet Access at high speed in France? --Sure, but with us! <
-- Davide Gaetano sysdfg () gsusgi1 gsu edu
Current thread:
- Various Solaris 2.3 file permission problems Frank Stuart (Jan 03)
- Re: Various Solaris 2.3 file permission problems jsz (Jan 04)
- Re: Various Solaris 2.3 file permission problems Darren Reed (Jan 06)
- /etc/mnttab and Solaris 2.4 Philippe Langlois (Jan 06)
- Re: /etc/mnttab and Solaris 2.4 Davide Gaetano (Jan 07)
- Re: /etc/mnttab and Solaris 2.4 Luke Mewburn (Jan 08)
- Re: Various Solaris 2.3 file permission problems jsz (Jan 04)
- <Possible follow-ups>
- Re: Various Solaris 2.3 file permission problems Calum Mackay (Jan 04)
- Re: Various Solaris 2.3 file permission problems Dave Mitchell (Jan 04)
- Re: Various Solaris 2.3 file permission problems jim () Tadpole COM (Jan 04)
- Re: Various Solaris 2.3 file permission problems Bob Dowling (Jan 19)
- Re: Various Solaris 2.3 file permission problems Paul Robinson (Jan 05)
- Re: Various Solaris 2.3 file permission problems der Mouse (Jan 05)
- Re: Various Solaris 2.3 file permission problems jsz (Jan 06)
- Re: Re: Various Solaris 2.3 file permission problems Pete Hartman (Jan 05)