Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 16 Aug 1996 16:02:20 -0600 (MDT)
From:      Nate Williams <nate@mt.sri.com>
To:        joerg_wunsch@uriah.heep.sax.de (Joerg Wunsch)
Cc:        freebsd-hackers@freebsd.org (FreeBSD hackers), mnewell@kaizen.net (Mike Newell)
Subject:   Re: Routed supports variable-length netmasks?
Message-ID:  <199608162202.QAA08601@rocky.mt.sri.com>
In-Reply-To: <199608162055.WAA07613@uriah.heep.sax.de>
References:  <Pine.SGI.3.95.960816123113.11933E-100000@dada.kaizen.net> <199608162055.WAA07613@uriah.heep.sax.de>

next in thread | previous in thread | raw e-mail | index | archive | help
J. Wunsch writes:
> As Mike Newell wrote:
> 
> > > I believe I hacked a copy of route to fix this problem and installed it as
> > > /etc/ppp/route...
> > 
> > That's what I had planned to do, but I wasn't sure if something else would
> > break if I just took out the UID checks.  If it works for you, I'll start
> > hack'n tonight.  :-)
> 
> NOOOOOOOOOOOOOOO!
> 
> Don't do it.  You're going to let everybody who has execute permission
> to this script manipulate your routing tables.  Read my other
> followup...

The hacked program doesn't have to be setuid, so it's no security
violation.  And, you can mess with the execute bits on it if you're
really paranoid.


Nate



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199608162202.QAA08601>