On Thu, May 17, 2001 at 01:37:00PM -0700, Andrew Edelstein wrote:
On Thu, May 17, 2001 at 04:41:48AM -0700, Kayven Riese wrote:
$ls -l /usr/local/bin/procmail
-rwsr-xr-x 1 root mail 115038 Mar 27 22:09
/usr/local/bin/procmail
this doesn't look good.. does it? };/
I think it looks great.
(0) eachep keeling /home/keeling_ all `which procmail`
-rwsr-sr-x 1 root mail 60292 Dec 1 1999 /usr/bin/procmail*
Uhm, you mean aside from it being setuid root? No, that's not good.
Could you explain this? He's got procmail, and it's world execute. If
he tells his .forward /usr/local/bin/procmail, he's done isn't he?
What's wrong with it being setuid root if it's a binary, not a script?
--
Any technology distinguishable from magic is insufficiently advanced.
TopQuark Software & Serv. Contract programmer, server bum.
keeling(_at_)spots(_dot_)ab(_dot_)ca Give up Spammers; I use
procmail.
_______________________________________________
procmail mailing list
procmail(_at_)lists(_dot_)RWTH-Aachen(_dot_)DE
http://MailMan.RWTH-Aachen.DE/mailman/listinfo/procmail