rm etc. (was: Nasty Security Hole?)

Jeff Siegal jbs at fenchurch.mit.edu
Mon Nov 21 06:08:03 AEST 1988


In article <8941 at smoke.BRL.MIL> gwyn at brl.arpa (Doug Gwyn (VLD/VMB) <gwyn>) writes:
>A utility such as "rm" COULD perform extra checks based on the inode
>permissions.  In fact the 4.nBSD "rm" does this ("override permissions
>on xxx?") and it is EXTREMELY annoying.

It is so annoying because the check is based on write access to the
file, which has very little, if anything to do with the operation of
deleting the file.

If there was a delete permission bit (this was the original point, I
believe), and some one had specifically turned it off, you might
actually want to think twice about deleting the file.

Jeff Siegal



More information about the Comp.unix.wizards mailing list