Bugtraq mailing list archives
Re: Sending escape sequences to xterms via wall/talk
From: pauld () pyramid com (Paul Daw)
Date: Thu, 21 Jul 1994 08:44:13 -0700
On Jul 21, 2:21, "Christopher A. Stewart" wrote:
Subject: Re: Sending escape sequences to xterms via wall/talk"Mike" == Mike Raffety <mike_raffety () il us swissbank com> writes:Mike> setuid programs don't produce core dumps; it's a security Mike> feature. Huh? What *NIX are you using? I've not noticed that behavior.. -- End of excerpt from "Christopher A. Stewart"
Hmm. I didn't think that this was the case either, but I just tried it (on a Pyramid MIS-T,) and I can't get any suid programs to dump core. Using the same test cases, non-suid programs dump core dependably. This makes sense if you think about it. Suppose I was running /bin/passwd, I had just entered in my password, and then passwd core dumped for some reason. The core image would have my clear text password stored in it. Of course, one could argue that the core should still be dumped, but be mode 400 and owned by the suid owner, but that isn't happening, at least in my case. -m--------- Paul Daw Pyramid Technology Corporation ---mmm------- Engineering Lab Management 3860 North First Street -----mmmmm----- pauld () pyramid com -or- San Jose, CA -------mmmmmmm--- uunet!pyramid!pauld 95134
Current thread:
- Re: Wall and talkd pass binary data, (continued)
- Re: Wall and talkd pass binary data Craig Presson (Jul 20)
- Wall and talkd pass binary data Rob Quinn (Jul 19)
- Flash/talkd Patrick Mcdowell (Jul 20)
- Re: Flash/talkd Eric Wedaa (Jul 20)
- Re: Wall and talkd pass binary data a.e.mossberg (Jul 20)
- Flash/talkd Patrick Mcdowell (Jul 20)
- Re: Wall and talkd pass binary data Martin Sean Bennet - Sun UK - CSG Engineer (Jul 20)
- Re: Sending escape sequences to xterms via wall/talk Mike Raffety (Jul 20)
- Re: Sending escape sequences to xterms via wall/talk Christopher A. Stewart (Jul 20)
- Re: Sending escape sequences to xterms via wall/talk Andrew Beckett (Jul 21)
- setuid root programs and core dumps Rob Quinn (Jul 21)
- Re: Sending escape sequences to xterms via wall/talk Paul Daw (Jul 21)
- Re: Sending escape sequences to xterms via wall/talk Evil Pete (Jul 21)
- Re: Sending escape sequences to xterms via wall/talk Christopher A. Stewart (Jul 21)
- Re: Sending escape sequences to xterms via wall/talk pluvius (Jul 22)
- Re: Sending escape sequences to xterms via wall/talk Mike Raffety (Jul 20)
- Is starting a user program on priv port via inetd dangerous ? Doug McLaren (Jul 21)
- Re: Is starting a user program on priv port via inetd dangerous ? Eric Murray (Jul 21)
- Re: Is starting a user program on priv port via inetd dangerous ? matthew green (Jul 21)
- Re: Is starting a user program on priv port via inetd dangerous ? Darren Reed (Jul 22)
- Re: Is starting a user program on priv port via inetd dangerous ? jmc () gnu ai mit edu (Jul 22)
- yes, there's another hole in BIND Paul A Vixie (Jul 21)
- Re: yes, there's another hole in BIND Resident Hacker (Jul 22)