#21: /sbin/service is reliably executed by suid root and doesn't clean it's PATH

3 views
Skip to first unread message

William A. Carrel

unread,
Jan 21, 2007, 4:39:10 PM1/21/07
to moab...@googlegroups.com
#21: /sbin/service is reliably executed by suid root and doesn't clean
it's PATH

Their fix for /sbin/service seems pretty sane.
--
wac

William A. Carrel

unread,
Jan 21, 2007, 4:43:13 PM1/21/07
to moab...@googlegroups.com

I suppose realistically writeconfig should be patched to sanitize it's
PATH, but since it is suid root it's not ape-able and we'd have to
rely on other methods...
--
wac

Reply all
Reply to author
Forward
0 new messages