Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 24 Oct 1995 06:17:58 +0300 (MSK)
From:      =?KOI8-R?Q?=E1=CE=C4=D2=C5=CA_=FE=C5=D2=CE=CF=D7?= (aka Andrey A. Chernov, Black Mage) <ache@astral.msk.su>
To:        Nate Williams <nate@rocky.sri.MT.net>
Cc:        ache@freefall.freebsd.org, freebsd-hackers@freebsd.org, "Justin T. Gibbs" <gibbs@freefall.freebsd.org>
Subject:   Re: ld.so, LD_NOSTD_PATH, and suid/sgid programs
Message-ID:  <Woch5Zm4S1@ache.dialup.demos.ru>
In-Reply-To: <199510240245.UAA24602@rocky.sri.MT.net>; from Nate Williams at Mon, 23 Oct 1995 20:45:55 -0600
References:  <199510240014.RAA21318@aslan.cdrom.com> <Dah73Zm0GT@ache.dialup.demos.ru> <199510240245.UAA24602@rocky.sri.MT.net>

next in thread | previous in thread | raw e-mail | index | archive | help
In message <199510240245.UAA24602@rocky.sri.MT.net> Nate Williams
    writes:

>I agree, and it appears that David and John P. are also in agreement.

Well, I and Terry in agreement :-)

>Since it is a very recent addition, as Justin pointed out that if they
>are knowledgable enough to use it, they should know how to use it.

Hackers always know and will use it.

>One, I find it hard to believe a program will work because it's in
>memory even though the shlibs can't be found, and secondly any script

Want experiment? Well. Start tcsh (it is dynamic). Then
remove ld.so.hints or use ldconfig -s. You still can prefectly
works in shell, but all share binaries dumps core.
Don't forget to reboot after.

>that needs to know that the programs it calls are linked static/shared
>is completely unportable.

I agree. As I already mention, all previously existen and working secure
shell scripts becomes completely unportable, if my fix not be commited.

>If you can't give a specific and useful example of *why* it's a good
>reason to do, I'm backing out the change with the speedup changes I'll
>be committing as soon as my tests complete.

Well, I send this script already two times. Want yet once?

-- 
Andrey A. Chernov        : And I rest so composedly,  /Now, in my bed,
ache@astral.msk.su       : That any beholder  /Might fancy me dead -
http://dt.demos.su/~ache : Might start at beholding me,  /Thinking me dead.
RELCOM Team,FreeBSD Team :         E.A.Poe         From "For Annie" 1849



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Woch5Zm4S1>