Vulnerability Development mailing list archives
Re: /usr/bin/Mail buffer 0verfl0w
From: Maciek Pasternacki <maciekp () JAPHY FNORD ORG>
Date: Wed, 7 Mar 2001 08:10:31 +0100
Syzop pressed following keys:
Why is mail on some systems sgid?, It looks like it's something with locking files, but why doesn't mail to be sgid on other systems then?
AFAIK it has something to do with brain-dead idea of putting users' mail in /var/spool/mail/login instead of /home/login/Mailbox (or, better, Maildir/). To lock the file which is not in world-writeable directory, program has to be setuid or setgid.
Syzop.
--jph -- __ Maciek Pasternacki <maciekp () japhy fnord org> [ http://japhy.fnord.org/ ] `| _ |_\ / *CENSORED* ( full version at http://japhy.fnord.org/sig.txt ) ,|{-}|}| }\/ \/ |____/
Attachment:
_bin
Description:
Current thread:
- /usr/bin/Mail buffer 0verfl0w SosPiro (Mar 01)
- Re: /usr/bin/Mail buffer 0verfl0w Enrique Maglietta (Mar 01)
- Re: /usr/bin/Mail buffer 0verfl0w syzop (Mar 01)
- Re: /usr/bin/Mail buffer 0verfl0w Knud Erik Hojgaard - CyberCity Support (Mar 02)
- Re: /usr/bin/Mail buffer 0verfl0w Knud Erik Hojgaard - CyberCity Support (Mar 02)
- Re: /usr/bin/Mail buffer 0verfl0w Jan Kluka (Mar 02)
- Re: /usr/bin/Mail buffer 0verfl0w Lord_Ph@ntom (Mar 06)
- Re: /usr/bin/Mail buffer 0verfl0w Syzop (Mar 06)
- Re: /usr/bin/Mail buffer 0verfl0w Maciek Pasternacki (Mar 07)
- Re: /usr/bin/Mail buffer 0verfl0w syzop (Mar 01)
- Re: /usr/bin/Mail buffer 0verfl0w Enrique Maglietta (Mar 01)
- Re: /usr/bin/Mail buffer 0verfl0w BAILLEUX Christophe (Mar 02)
- Re: /usr/bin/Mail buffer 0verfl0w Joe (Mar 02)
- Re: /usr/bin/Mail buffer 0verfl0w Blue Boar (Mar 03)
- Crediting/Communication (Was: Re: [VULN-DEV] /usr/bin/Mail buffer 0verfl0w) Syzop (Mar 03)
- <Possible follow-ups>
- Re: /usr/bin/Mail buffer 0verfl0w Nasko . (Mar 03)