Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 11 Jul 1998 08:34:18 +0200
From:      Poul-Henning Kamp <phk@critter.freebsd.dk>
To:        "Angelos D. Keromytis" <angelos@dsl.cis.upenn.edu>
Cc:        security@FreeBSD.ORG
Subject:   Re: chroot() 
Message-ID:  <2486.900138858@critter.freebsd.dk>
In-Reply-To: Your message of "Fri, 10 Jul 1998 22:35:19 EDT." <199807110241.WAA21195@adk.gr> 

next in thread | previous in thread | raw e-mail | index | archive | help
In message <199807110241.WAA21195@adk.gr>, "Angelos D. Keromytis" writes:

>Keep in mind that it's trivial to escape from a root shell if you have
>root (or can do certain things). chroot() is unfortunately far from
>perfect.

A FreeBSD user has paid me to strengthen the chroot() concept, and the code
will go into FreeBSD when he has had time to get his money back through
the use of it.

--
Poul-Henning Kamp             FreeBSD coreteam member
phk@FreeBSD.ORG               "Real hackers run -current on their laptop."
"ttyv0" -- What UNIX calls a $20K state-of-the-art, 3D, hi-res color terminal

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?2486.900138858>