home *** CD-ROM | disk | FTP | other *** search
- From: mh1@irz.inf.tu-dresden.de (Michael Hohmuth)
- Subject: Re: seduid scripts
- Date: Tue, 23 Mar 93 13:57:26 MET
- In-Reply-To: <27579.9303230759@piglet.earth.earth.ox.ac.uk>; from "Stephen Usher" at Mar 23, 93 7:59 am
-
- Steve writes:
-
- > > [about /bin/scripter]
- >
- > This sounds an even more unholy mess than one incidence of / -> \ conversion
- > in the kernel! Anyway, it's just one more security hole, not that there
- > aren't one or two already! :-)
-
- Why is that an security hole? `/bin/scripter' would be just another shell
- which happens to be setuid-root (just like `su').
-
- IMHO, having a script launcher is better than putting inconsistencies
- in the kernel.
-
- Michael
- --
- Internet: hohmuth@freia.inf.tu-dresden.de
-