From owner-freebsd-bugs Sat Oct 7 10:26:28 2000 Delivered-To: freebsd-bugs@freebsd.org Received: from freefall.freebsd.org (freefall.FreeBSD.org [216.136.204.21]) by hub.freebsd.org (Postfix) with ESMTP id 053AA37B66C; Sat, 7 Oct 2000 10:26:27 -0700 (PDT) Received: (from wollman@localhost) by freefall.freebsd.org (8.9.3/8.9.2) id KAA10155; Sat, 7 Oct 2000 10:26:27 -0700 (PDT) (envelope-from wollman@FreeBSD.org) Date: Sat, 7 Oct 2000 10:26:27 -0700 (PDT) From: Message-Id: <200010071726.KAA10155@freefall.freebsd.org> To: mwm@mired.org, wollman@FreeBSD.org, freebsd-bugs@FreeBSD.org Subject: Re: conf/21814: Inetd's very existence is a security risk. Sender: owner-freebsd-bugs@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org Synopsis: Inetd's very existence is a security risk. State-Changed-From-To: open->closed State-Changed-By: wollman State-Changed-When: Sat Oct 7 10:25:02 PDT 2000 State-Changed-Why: Any attacker who could run a pre-built inetd binary on your system is well capable of copying his own binary there. Inetd does not have innate privilege. Therefore, there is no conceivable security improvement from disabling it. http://www.freebsd.org/cgi/query-pr.cgi?pr=21814 To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-bugs" in the body of the message