Re: Modified version of jexec allows non-root access into jails
- From: Colin Percival <cperciva@xxxxxxxxxxx>
- Date: Sat, 30 Dec 2006 20:59:47 -0800
Bill Moran wrote:
You also describe a scenerio where a user can create a jail of his own
design and give himself root inside it, thus allowing him to use the
setuid trick to get root on the host as well. The place this falls down
is that the user would need to already have root to create the jail in the
first place.
Not necessarily. An unprivileged user can create hard links to binaries
he doesn't own, including suid binaries.
Colin Percival
_______________________________________________
freebsd-hackers@xxxxxxxxxxx mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-hackers
To unsubscribe, send any mail to "freebsd-hackers-unsubscribe@xxxxxxxxxxx"
- Follow-Ups:
- Re: Modified version of jexec allows non-root access into jails
- From: Robert Watson
- Re: Modified version of jexec allows non-root access into jails
- References:
- Re: Modified version of jexec allows non-root access into jails
- From: Colin Percival
- Re: Modified version of jexec allows non-root access into jails
- From: Bill Moran
- Re: Modified version of jexec allows non-root access into jails
- Prev by Date: Re: problem with apache bench
- Next by Date: Re: Init.c, making it chroot
- Previous by thread: Re: Modified version of jexec allows non-root access into jails
- Next by thread: Re: Modified version of jexec allows non-root access into jails
- Index(es):
Relevant Pages
|
|