Vulnerability Development mailing list archives

Re: SUID server


From: Philipp Buehler <lists () fips de>
Date: Tue, 3 Oct 2000 15:16:06 +0200

On 02/10/2000, J C Lawrence <claw () kanga nu> wrote To Philipp Buehler:
So, you write a check/parser for *any* suid binary behind it?

I would look at it as directly similar to the way PAM and PAM
modules are currently implemented.
Well, so you have the pretty same problem in parsing. Modular or not.
The check has to be done and so you just move the problem.

ciao
--
Philipp Buehler, aka fIpS | sysfive.com GmbH | BOfH | NUCH | <double-p>
%SYSTEM-F-TOOEARLY, please contact your sysadmin at a sensible time.
Artificial Intelligence stands no chance against Natural Stupidity.
           [X] <-- nail here for new monitor


Current thread: