httpd-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Randy Terbush <ra...@zyzzyva.com>
Subject Re: suexec concerns
Date Fri, 03 Jan 1997 22:24:36 GMT
Marc Slemko had previously stated:
> Heck, take the typical silly system with lots of bin owned binaries.  What
> is bin's home directory on your system?  "/"?  "/bin"?  "/usr/bin"?  Cool,
> as HTTPD_USER do:
> 
> 	cd /bin
> 	/path/to/suexec \~bin bin sh
> 
> bin looses.

As I re-read this, you are absolutely correct about this. I forgot
about the ~user issue.




Mime
View raw message