Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 9 Nov 1997 14:02:20 -0800 (PST)
From:      Archie Cobbs <archie@whistle.com>
To:        joerg_wunsch@uriah.heep.sax.de
Cc:        hackers@FreeBSD.ORG
Subject:   Re: How useful is this patch?
Message-ID:  <199711092202.OAA00530@bubba.whistle.com>
In-Reply-To: <19971109162421.IH64390@uriah.heep.sax.de> from J Wunsch at "Nov 9, 97 04:24:21 pm"

next in thread | previous in thread | raw e-mail | index | archive | help

J Wunsch writes:
> As Julian Elischer wrote:
> 
> > if a mount option is specified, then setting the SUID bit
> > on a directory specifies similar inheritance with UIDS as we 
> > presently have with GIDs.
> 
> As long as it's a mount option (defaulting to off), i think i could
> live with it.
> 
> > The SUID bits are hereditary to child directories, and
> > a file 'given away' in this manner 
> >   1/ cannot be give n to root (would defeat quotas)
> >   2/ has the execute bits stripped off (and suid)
> 
> Problem: you can cause someone else a DoS attack by maliciously
> filling his home directory.

This attack would require that you have given the other user write
permission to your home directory, at least.

-Archie

___________________________________________________________________________
Archie Cobbs   *   Whistle Communications, Inc.  *   http://www.whistle.com



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199711092202.OAA00530>