From owner-freebsd-security Thu Aug 17 05:44:06 1995 Return-Path: security-owner Received: (from majordom@localhost) by freefall.FreeBSD.org (8.6.11/8.6.6) id FAA07903 for security-outgoing; Thu, 17 Aug 1995 05:44:06 -0700 Received: from eikon.e-technik.tu-muenchen.de (eikon.regent.e-technik.tu-muenchen.de [129.187.42.3]) by freefall.FreeBSD.org (8.6.11/8.6.6) with ESMTP id FAA07872 for ; Thu, 17 Aug 1995 05:43:51 -0700 Received: from vector.eikon.e-technik.tu-muenchen.de (vector.eikon.e-technik.tu-muenchen.de [129.187.142.36]) by eikon.e-technik.tu-muenchen.de (8.6.12/8.6.9) with ESMTP id OAA14054 for ; Thu, 17 Aug 1995 14:42:22 +0200 Received: (from terry@localhost) by vector.eikon.e-technik.tu-muenchen.de (8.6.11/8.6.9) id OAA08020 for security@freebsd.org; Thu, 17 Aug 1995 14:42:30 +0200 Date: Thu, 17 Aug 1995 14:42:30 +0200 From: Terry Carroll Message-Id: <199508171242.OAA08020@vector.eikon.e-technik.tu-muenchen.de> To: security@freebsd.org Subject: Login hole Sender: security-owner@freebsd.org Precedence: bulk Login with no home directory should be denied for normal user. Should not drop one into /.