Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 17 Jan 2001 10:45:57 +0000
From:      David Malone <dwmalone@maths.tcd.ie>
To:        Peter Pentchev <roam@orbitel.bg>
Cc:        mbac@mmap.nyct.net, hackers@FreeBSD.org
Subject:   Re: Permissions on crontab.. 
Message-ID:   <200101171045.aa30069@salmon.maths.tcd.ie>
In-Reply-To: Your message of "Wed, 17 Jan 2001 12:37:41 %2B0200." <20010117123740.Q364@ringworld.oblivion.bg> 

next in thread | previous in thread | raw e-mail | index | archive | help
> ..or did you mean some kind of unintended/faulty behavior?  Yes,

I ment unintended.

> running crontab setgid does open a window of opportunity for errors,
> but no more, I think, than running it setuid, as it currently is.

True - but I'd say it provides a false sense of security, which
might be more damaging than the extra security provided against
read-only exploits in crontab.

	David.


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-hackers" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi? <200101171045.aa30069>