Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 6 Jan 1999 15:09:21 +1100
From:      Peter Jeremy <peter.jeremy@auss2.alcatel.com.au>
To:        arch@FreeBSD.ORG
Subject:   Re: Implementing a DEVFS daemon
Message-ID:  <99Jan6.150846est.40340@border.alcanet.com.au>

next in thread | raw e-mail | index | archive | help
The moderator commented:
[Security holes due to time between device arriving and devfsd fixing
 the permissions]
>[This is not a problem if the devices arrive with 'suitable'
>permissions; ie, totally restricted. -EE]

Note that `totally restricted' is inappropriate for some devices:
/dev/null is the most obvious one, but /dev/zero is another candidate.
Admittedly, they shouldn't be magically appearing whilst the system is
running.

Peter

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-arch" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?99Jan6.150846est.40340>