Mysterious security hole

Joshua Yeidel yeidel at tomar.accs.wsu.edu
Sat Jun 22 06:30:54 AEST 1991


>The example of having something in / is bad for obvious reasons.  But 
>what about /tmp?  A script named say "la" (common type of "ls") which
>does a chmod 777 /, sends mail to the person and then echos 
>"la: Command not found" would do the job nicely. 

Is /tmp in your path?  Why?



More information about the Comp.unix.admin mailing list