Bugtraq mailing list archives

(debian) Re: suidperl; more


From: Alexander Oelzant <aoe () OEH NET>
Date: Tue, 8 Aug 2000 15:03:33 +0200

On Mon, Aug 07, 2000 at 06:07:57PM +0200, Sebastian wrote:
So far, there are more security-releated apps which use /bin/mail
for logging

Debian again proves to be highly security-aware: it does not even
have a /bin/mail and is thus safe from this very attack. Of course,
using /usr/bin/mail works fine, so any applications where /bin/mail
was not hardcoded would be affected.

hth
   Alexander

--
Alexander Oelzant               alexander () oelzant priv at


Current thread: