Re: Glitch in sys_chroot()

Adam D. Bradley (bradley@cs.unca.edu)
Sun, 17 Nov 1996 16:08:14 -0500 (EST)


> > Just to show exactly HOW stupid this whole discussion is, here's inane
> > argument #1: "The suid/sgid bits are the main source of security holes, so
> > why don't we disable those altogether, and then we'll have a secure
> > system".
>
> Hey, thats a good idea!

Hey, yeah! Even better...somewhere in the ELF loader, add a patch that
parses suid binaries and makes sure they don't have any buffer overflow
bugs or erratic chroot/chdir behaviors or unintended file overwrites or...

What do you think, Linus, not _too_ much bloat in that one? ;-)

(Where's that sponge? My terminal's dripping w/ sarcasm again...)

Adam

--
He feeds on ashes; a deluded mind has led him    Adam Bradley, UNCA Senior
astray, and he cannot deliver himself or say,             Computer Science
"Is there not a lie in my right hand?"   Isaiah 44:20
        bradley@cs.unca.edu       http://www.cs.unca.edu/~bradley      <><