Re: svn commit: r228843 - head/contrib/telnet/libtelnet

看板FB_security作者時間14年前 (2011/12/25 18:32), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串2/20 (看更多)
On Sat, Dec 24, 2011 at 09:14:44PM -0800, Xin LI wrote: > - Must not break existing and legitimate use of chroot(2), in other > words no semantics change permitted. Later POSIX drops chroot() completely, so we can feel free of bound of the strong legitimacy. We already have many counterexamples (mainly related to issetugid()). F.e. we disable user locale files - disable functionality. IMHO stopping thinking the way that chroot() is fully equivalent to the root hierarchy will be good starting point here. -- http://ache.vniz.net/ _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #1Ezlkcs5 (FB_security)
討論串 (同標題文章)
文章代碼(AID): #1Ezlkcs5 (FB_security)