Newsgroups: comp.unix.admin Path: utzoo!utgpu!news-server.csri.toronto.edu!rpi!zaphod.mps.ohio-state.edu!casbah.acns.nwu.edu!navarra From: navarra@casbah.acns.nwu.edu (The MaD ScIeNTiSt) Subject: Re: Possible security problem, need information.. Message-ID: <1991Mar20.054728.8624@casbah.acns.nwu.edu> Organization: Northwestern University References: <1991Mar19.194216.5763@kithrup.COM> <873@optima.cs.arizona.edu> Date: Wed, 20 Mar 1991 05:47:28 GMT Lines: 20 >However, if the sticky bit is unimplemented, or is implemented half >heartedly, then you can move files you own on top of files someone else >owns (even though you may not be able to rm files owned by others). Wonder what would happen if you did something like moving core on top of /.cshrc or /.login? how bout ln core .cshrc? how bout: cp /dev/zero / (is that possible i wonder?) ln zero .cshrc Sounds particulary nasty. This is only a speculation, not an exhibition so please please -- no wagering! -- From the Lab of the MAd ScIenTisT.... navarra@casbah.acns.nwu.edu