Submit Hint Search The Forums LinksStatsPollsHeadlinesRSS
14,000 hints and counting!


Click here to return to the 'Potential warning: 10.3.9 disables SUID/SGID flag' hint
The following comments are owned by whoever posted them. This site is not responsible for what they say.
Potential warning: 10.3.9 disables SUID/SGID flag
Authored by: pete.yandelll on Apr 18, '05 07:28:51PM

Argh! Why is everybody complaining about this? Every other UNIX under the sun blocks SUID/SGID scripts, and it's about time that Apple followed suit. It's not going to affect anything you do, as nobody produces software that contians SUID/SGID scripts anyway.

And for all those people asking "Why?", did you make any effort at all to find out? The first link if you google for "suid scripts" is this article from Tech FAQ that lists the problems.



[ Reply to This | # ]
Potential warning: 10.3.9 disables SUID/SGID flag
Authored by: gshenaut on Apr 18, '05 08:19:08PM

I followed the link to "Tech FAQs", and it was rather interesting, but only one of the exploits was specific to scripts, the "-i" exploit, and I tried that one with (ba)sh, (t)csh, and ksh, and it didn't work, I never got an interactive shell--probably the shells themselves know about that & block it. Maybe the exploit would work, but you'd have to work a lot harder than I was willing to do.

The other exploits had to do with compiled programs only or with both compiled programs and scripts.

Greg Shenaut



[ Reply to This | # ]