ulimit
Greg Woods
woods at tmsoft.uucp
Tue Apr 25 10:50:38 AEST 1989
In article <16042 at rpp386.Dallas.TX.US> jfh at rpp386.Dallas.TX.US (John F. Haugh II) writes:
>In article <100455 at sun.Eng.Sun.COM> plocher at sun.COM (John Plocher) writes:
>>In all this talk about ULIMIT don't forget that there is at least one known
>>bug in the AT&T SVr[23] implementation:
>>
>> % ls -l /etc/passwd
>> -rw-r--r-- 1 root 0 Apr 3 10:44 /etc/passwd
>> % su
>> password: xxxxxxx
>
>How'd you do that? In the absence of a password file entry for root
>will su _really_ let you in? [ The answer in SVr[12?] is NO ]
Ah, so much for the good old days (BSD4.? on vax) when we used to trick
various daemons into zapping /etc/passwd so that we could login as root.
--
Greg A. Woods.
woods@{{tmsoft,utgpu,gate,ontmoh}.UUCP,utorgpu.BITNET,gpu.utcs.Toronto.EDU}
+1-416-443-1734 [h], +1-416-595-5425 [w] Toronto, Ontario, Canada
More information about the Comp.bugs.sys5
mailing list