Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 7 Jan 1999 21:42:42 +0100
From:      Guido van Rooij <guido@gvr.org>
To:        Vadim Kolontsov <vadim@tversu.ru>, Don Lewis <Don.Lewis@tsc.tdk.com>
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: kernel/syslogd hack
Message-ID:  <19990107214242.A1721@gvr.org>
In-Reply-To: <19990106094701.A28727@tversu.ru>; from Vadim Kolontsov on Wed, Jan 06, 1999 at 09:47:01AM %2B0300
References:  <vadim@tversu.ru> <199901060039.QAA13314@salsa.gv.tsc.tdk.com> <19990106094701.A28727@tversu.ru>

next in thread | previous in thread | raw e-mail | index | archive | help
On Wed, Jan 06, 1999 at 09:47:01AM +0300, Vadim Kolontsov wrote:
> 
>   Who will rebuild all binary-only FreeBSD/Linux apps, available on the market?
> Not all of them use shared libraries.

So..If you rewrite syslog(3) to sendmsg an SS_CRED message, you can rewrite
syslog to only log the (e)uid of the syslog(3)-caller when thi messages
is received. This way you would not break the older syslog-users.

-Guido

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?19990107214242.A1721>