Bugtraq mailing list archives

Re: Overflows in minicom


From: sec () 42 ORG (Stefan `Sec` Zehl)
Date: Tue, 12 May 1998 10:19:51 +0200


On Tue, May 12, 1998 at 05:51:00AM +0200, Andi Kleen wrote:
I assumed the libc would ignore NLSPATH when the app runs suid (similar
like it does with LD_LIBRARY_PATH etc.). If it doesn't that is a bad bug.

Not all programs in which that could be a problem are suid. Think about
that telnet/login hole.

CU,
    Sec
--
          Hiroshima '45    Tsjernobyl '86   Windows '95



Current thread: