Secure setuid shell scripts

Rahul Dhesi dhesi at bsu-cs.UUCP
Thu Oct 20 07:34:45 AEST 1988


If a 4.3BSD system has not been patched to disallow set-user-id shell
scripts, but root uses no set-user-id scripts, does a security hole
still exist that will allow an unprivileged user to obtain root
privileges?
-- 
Rahul Dhesi         UUCP:  <backbones>!{iuvax,pur-ee}!bsu-cs!dhesi



More information about the Comp.unix.wizards mailing list