Full Disclosure mailing list archives

Re: Kernelpanik Labs Digest 2005-1


From: André Malo <nd () perlig de>
Date: Mon, 10 Jan 2005 12:12:09 +0100

* Kernelpanik Labs - Security Lists wrote:

Apache suEXEC Bypass
--------------------
Small document about how bypass isolating
procedures, i.e. suEXEC, in Apache WebServer.
English document:
http://www.kernelpanik.org/docs/kernelpanik/suexec.en.pdf Spanish
document: http://www.kernelpanik.org/docs/kernelpanik/suexec.es.pdf
Author: frame at kernelpanik.org

FUD. This document just shows, that one can read world readable files in the 
filesystem. Nice try...

nd
-- 
Winnetous Erbe: <http://pub.perlig.de/books.html#apache2>
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: