Aucbvax.3156
fa.unix-wizards
utzoo!decvax!ucbvax!unix-wizards
Tue Sep 15 15:30:35 1981

>From decvax!utzoo!henry@Berkeley Tue Sep 15 15:24:25 1981
re /usr/spool/mail/root trick:

Writing on a setuid file does not shut off the setuid bits in a standard
V7.  Nor does chowning it.  Neither change is hard, but it's not clear
to me that it's worth being incompatible with the rest of the world, when
the /usr/spool/mail/root problem really arises from another cause entirely.
The real moral of the story is that setuid programs like mail should be
careful about doing chowns.  We have modified V7 mail (for other reasons
entirely, actually) so that it does the chown only if the file did not
exist before mail fopened it.

                                               Henry Spencer
                                               ucbvax!decvax!utzoo!henry

-----------------------------------------------------------------
gopher://quux.org/ conversion by John Goerzen <[email protected]>
of http://communication.ucsd.edu/A-News/


This Usenet Oldnews Archive
article may be copied and distributed freely, provided:

1. There is no money collected for the text(s) of the articles.

2. The following notice remains appended to each copy:

The Usenet Oldnews Archive: Compilation Copyright (C) 1981, 1996
Bruce Jones, Henry Spencer, David Wiseman.