ulimit

Greg Woods woods at tmsoft.uucp
Tue Apr 25 10:50:38 AEST 1989


In article <16042 at rpp386.Dallas.TX.US> jfh at rpp386.Dallas.TX.US (John F. Haugh II) writes:
>In article <100455 at sun.Eng.Sun.COM> plocher at sun.COM (John Plocher) writes:
>>In all this talk about ULIMIT don't forget that there is at least one known
>>bug in the AT&T SVr[23] implementation:
>>
>>	% ls -l /etc/passwd
>>	-rw-r--r--  1 root            0 Apr  3 10:44 /etc/passwd
>>	% su
>>	password: xxxxxxx
>
>How'd you do that?  In the absence of a password file entry for root
>will su _really_ let you in?  [ The answer in SVr[12?] is NO ]

Ah, so much for the good old days (BSD4.? on vax) when we used to trick
various daemons into zapping /etc/passwd so that we could login as root.
-- 
						Greg A. Woods.

woods@{{tmsoft,utgpu,gate,ontmoh}.UUCP,utorgpu.BITNET,gpu.utcs.Toronto.EDU}
+1-416-443-1734 [h],	+1-416-595-5425 [w]		Toronto, Ontario, Canada



More information about the Comp.bugs.sys5 mailing list