Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 17 May 1996 10:50:50 -0400
From:      Garrett Wollman <wollman@lcs.mit.edu>
To:        "Jordan K. Hubbard" <jkh@time.cdrom.com>
Cc:        freebsd-security@freebsd.org
Subject:   Re: very bad 
Message-ID:  <9605171450.AA04803@halloran-eldar.lcs.mit.edu>
In-Reply-To: <13642.832322039@time.cdrom.com>
References:  <Pine.BSF.3.91.960517012516.20464H-100000@onyx.nervosa.com> <13642.832322039@time.cdrom.com>

next in thread | previous in thread | raw e-mail | index | archive | help
<<On Fri, 17 May 1996 01:33:59 -0700, "Jordan K. Hubbard" <jkh@time.cdrom.com> said:

>> Too bad it's already on BUGTRAQ and BoS which is way more than 1000 :-(
> Ah well, what's done is done.

>> of such an address. The prepared fix is chmod u-s /sbin/mount_union.

> It should at least return EPERM! :-)

No.  Users are /supposed/ to be able to use mount(2) now, if they have
appropriate permissions on the source and target.  This appears to be
a hole in vfsload(3), which I will fix ASAP, if someone doesn't get to
it before I do.

-GAWollman

--
Garrett A. Wollman   | Shashish is simple, it's discreet, it's brief. ... 
wollman@lcs.mit.edu  | Shashish is the bonding of hearts in spite of distance.
Opinions not those of| It is a bond more powerful than absence.  We like people
MIT, LCS, ANA, or NSA| who like Shashish.  - Claude McKenzie + Florent Vollant



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?9605171450.AA04803>