Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 4 Jul 2000 09:21:15 -0400 (EDT)
From:      Wes Morgan <morganw@chemicals.tacorp.com>
To:        Brian Feldman <green@FreeBSD.ORG>
Cc:        cvs-committers@FreeBSD.ORG, cvs-all@FreeBSD.ORG
Subject:   Re: cvs commit: src/crypto/openssh sshd.c
Message-ID:  <Pine.BSF.4.21.0007040918400.70488-100000@volatile.chemicals.tacorp.com>
In-Reply-To: <200007040646.IAA67137@internat.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
I hope that there is no way ever in 1e6 years that someone will be able to
subvert /proc/curproc and get sshd to execute the program of his choice as
root when it gets HUP'd. I can't think of any way possible, but there are
6 billion people out there besides me.


On Tue, 4 Jul 2000, Brian Feldman wrote:

> green       2000/07/04 08:46:10 SAST
> 
> FreeBSD International Crypto Repository
> 
>   Modified files:
>     crypto/openssh       sshd.c 
>   Log:
>   MFF:
>   Allow restarting on SIGHUP when the full path was not given as argv[0].
>   We do have /proc/curproc/file :)
>   
>   Revision  Changes    Path
>   1.13      +2 -1      src/crypto/openssh/sshd.c
> 
> 
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe cvs-all" in the body of the message
> 

-- 
                                           _ __ ___ ____  ___ ___ ___
          Wesley N Morgan                       _ __ ___ | _ ) __|   \
          wesleymorgan@home.com                     _ __ | _ \._ \ |) |
          FreeBSD: The Power To Serve                  _ |___/___/___/
Hi! I'm a .signature virus! Copy me into your ~/.signature to help me spread!



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.21.0007040918400.70488-100000>