Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 8 Feb 1997 17:02:24 -0800 (PST)
From:      Snob Art Genre <ben@narcissus.ml.org>
To:        "T. William Wells" <bill@twwells.com>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: 2.1.7 binaries and 2.1.5 system
Message-ID:  <Pine.BSF.3.91.970208170122.7209A-100000@narcissus.ml.org>
In-Reply-To: <m0vtNXP-0000sRC@twwells.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sat, 8 Feb 1997, T. William Wells wrote:

> I want to do a quick substitution of the 2.1.7 setuid programs
> (when 2.1.7 comes out) into my 2.1.5 system, as I don't have the
> time to do a full upgrade. Any caveats?

Yes: a privileged program can run an unprivileged program that still has
the problems.  So to be secure, you'll want to replace all
statically-linked binaries. 



 Ben

"You have your mind on computers, it seems."




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.3.91.970208170122.7209A-100000>