Date: Thu, 11 Jul 2002 13:03:56 +0200 From: Pawel Jakub Dawidek <nick@garage.freebsd.pl> To: freebsd-hackers@freebsd.org Subject: Re: No suid crontab(1). Message-ID: <20020711110356.GK12920@garage.freebsd.pl> In-Reply-To: <20020711105214.GJ12920@garage.freebsd.pl> References: <20020711105214.GJ12920@garage.freebsd.pl>
next in thread | previous in thread | raw e-mail | index | archive | help
I forgot, that should be always an empty file "root" in /var/cron/tabs and files of all users if we don't want to gives attacker their rights. But I think the best way is to change cron(8) that it will be check file owner. -- Pawel Jakub Dawidek UNIX Systems Administrator http://garage.freebsd.pl Am I Evil? Yes, I Am. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-hackers" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020711110356.GK12920>