Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 11 Jul 2002 13:03:56 +0200
From:      Pawel Jakub Dawidek <nick@garage.freebsd.pl>
To:        freebsd-hackers@freebsd.org
Subject:   Re: No suid crontab(1).
Message-ID:  <20020711110356.GK12920@garage.freebsd.pl>
In-Reply-To: <20020711105214.GJ12920@garage.freebsd.pl>
References:  <20020711105214.GJ12920@garage.freebsd.pl>

next in thread | previous in thread | raw e-mail | index | archive | help
I forgot, that should be always an empty file "root" in /var/cron/tabs
and files of all users if we don't want to gives attacker their rights.

But I think the best way is to change cron(8) that it will be check
file owner.

-- 
Pawel Jakub Dawidek
UNIX Systems Administrator
http://garage.freebsd.pl
Am I Evil? Yes, I Am.

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-hackers" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020711110356.GK12920>