Re: Claimed vulnerability in GTK_MODULES
- From: Mark Mielke <mark mark mielke cc>
- To: Pavel Machek <pavel ucw cz>
- Cc: Havoc Pennington <hp redhat com>, Owen Taylor <otaylor redhat com>, BUGTRAQ SECURITYFOCUS COM, gtk-devel-list gnome org
- Subject: Re: Claimed vulnerability in GTK_MODULES
- Date: Wed, 10 Jan 2001 19:50:49 -0500
On Tue, Jan 09, 2001 at 07:49:38PM +0100, Pavel Machek wrote:
> With world-writable high scores, anyone can mess them up in less than
> minute.
So don't make the executable setgid.
Security accomplished.
mark (sheesh)
--
mark mielke cc/markm ncf ca/markm nortelnetworks com __________________________
. . _ ._ . . .__ . . ._. .__ . . . .__ | Neighbourhood Coder
|\/| |_| |_| |/ |_ |\/| | |_ | |/ |_ |
| | | | | \ | \ |__ . | | .|. |__ |__ | \ |__ | Ottawa, Ontario, Canada
One ring to rule them all, one ring to find them, one ring to bring them all
and in the darkness bind them...
http://mark.mielke.cc/
[
Date Prev][
Date Next] [
Thread Prev][
Thread Next]
[
Thread Index]
[
Date Index]
[
Author Index]