Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 10 Jul 2001 23:09:32 +0200
From:      "Przemyslaw Frasunek" <venglin@freebsd.lublin.pl>
To:        "Jason DiCioccio" <jdicioccio@epylon.com>, "'Mike Tancsa'" <mike@sentex.net>, <security@freebsd.org>
Subject:   Re: FreeBSD Security Advisory FreeBSD-SA-01:
Message-ID:  <029901c10984$9eab3d00$2001a8c0@clitoris>
References:  <657B20E93E93D4118F9700D0B73CE3EA02FFEFA3@goofy.epylon.lan>

next in thread | previous in thread | raw e-mail | index | archive | help
> trivial.. the only way I have found to temporarily stop stupid script
> kiddies while I upgrade is:
> touch /tmp/sh
> chmod 0 /tmp/sh

The simple workaround is to use my rexec kernel module. It strips unneeded
or suspicious environment variables, arguments, etc...

http://www.frasunek.com/sources/security/rexec/

--
* Fido: 2:480/124 ** WWW: http://www.frasunek.com/ ** NIC-HDL: PMF9-RIPE *
* Inet: przemyslaw@frasunek.com ** PGP: D48684904685DF43EA93AFA13BE170BF *


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?029901c10984$9eab3d00$2001a8c0>