Serious potential security problem. (was Re: BSD tty security, part 3: How to Fix It)

Dan Bernstein brnstnd at kramden.acf.nyu.edu
Thu May 2 12:17:18 AEST 1991


In article <1991May1.140953.20081 at mp.cs.niu.edu> rickert at mp.cs.niu.edu (Neil Rickert) writes:
>  Why are we worrying about somebody sneaking in through a tiny crack in the
> basement, when the front door is swinging wide open.
  [ ... ]
> 	/etc/hosts.equiv contains the infamous '+' line.

Sun makes lots of mistakes, and vendors who take ideas from Sun copy the
mistakes. However, relatively few Suns are multiuser machines; the
``tiny crack in the basement'' is in *everyone's* basement, not just
Sun's.

---Dan



More information about the Comp.unix.wizards mailing list