Re: /proc filesystem allows bypassing directory permissions on L

看板Bugtraq作者時間16年前 (2009/10/27 03:01), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串1/1
On 24.10.2009 20:59, Anton Ivanov wrote: >> Not to tell about >> that /proc/<PID>/fd/ contains only symbolic links, not files, so I can't >> understand, how the original reporter managed to gain access to the file in the >> restricted directory using that symlink. > > The perms are definitely broken and without a code audit on procfs I > would not bet that this is limited just to this rather obscure test > case. > > To be honest, I hope that it is limited to this rather obscure test > case. If it is not there may be entertaining ramifications. > Given my citation above (I personally use Linux), that obscure test case looks doubtful. If the original reporter uses some patched kernel, that doesn't matter others. -- Sincerely Your, Dan.
文章代碼(AID): #1AvV7kUR (Bugtraq)