lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Date: Sat, 24 Oct 2009 01:12:51 +0400 From: Dan Yefimov <dan@...htwave.net.ru> To: Matthew Bergin <matt.bergin@...mail.com> Cc: bugtraq@...urityfocus.com Subject: Re: /proc filesystem allows bypassing directory permissions on Linux On 24.10.2009 0:35, Matthew Bergin wrote: > doesnt look like the original owner is trying to write to it. Shows it > cant, it had guest write to it via the proc folders bad permissions. > Looks legitimate > Please tell me, who issued 'chmod 0666 unwritable_file'? Was that an attacker? No, that was the owner of 'unwritable_file', nobody else. What the 0666 file mode means? It means, that everybody can write to the file, can't he? So why do you believe that pretension legitimate? -- Sincerely Your, Dan.
Powered by blists - more mailing lists