Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 12 May 2000 11:19:29 -0700
From:      Nick Sayer <nsayer@sftw.com>
To:        Warner Losh <imp@village.org>, freebsd-hackers@freebsd.org
Subject:   Re: rexec as root
Message-ID:  <391C4B31.4B1DB762@sftw.com>
References:  <391C12B5.E5A2DCD3@quack.kfu.com> <200005121731.LAA12588@harmony.village.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Warner Losh wrote:

> [...] In the absense of this
> test, machines in a yp netowrk would be extremely vulnerable to root
> uid penetration when an intruder can hack the yp database, or spoof
> replies.

Ok. How about adding an rexecd command line flag to disable
that test (with suitable warnings in the man page)?




To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-hackers" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?391C4B31.4B1DB762>