LWN.net Logo

suid-binary vulnerabilities

suid-binary vulnerabilities

Posted Oct 28, 2010 21:24 UTC (Thu) by jengelh (subscriber, #33263)
In reply to: suid-binary vulnerabilities by cesarb
Parent article: Two glibc vulnerabilities

>For instance, imagine if ping, instead of being setuid, called into dbus to load a helper daemon

Or just enhance the kernel to enable socket(AF_INET, SOCK_RAW, IPPROTO_ICMP) for unprivileged users, and scrutinize packets sent/received through the socket.


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds