Re: strange limitation on rcmd()

看板FB_security作者時間19年前 (2006/07/11 11:04), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串5/7 (看更多)
On Monday 10 July 2006 10:17, Simon L. Nielsen wrote: = Actually it is, but it would obviously be a stupid idea to do so any = place where privileged ports are required... It would be. But where they are NOT required, it is stupid to check the geteuid() inside the client's rcmd :-) Thank you very much for your explanation, Brian, rsh being an SUID is something I overlooked. What I remain upset about, though, is that the rcmdsh(), which is used by rcmd() ignores the fd2p parameter making it impossible to capture the remote's stderr... Yours, -mi _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #14inL800 (FB_security)
文章代碼(AID): #14inL800 (FB_security)