home *** CD-ROM | disk | FTP | other *** search
- Newsgroups: comp.protocols.appletalk
- Path: sparky!uunet!enterpoop.mit.edu!senator-bedfellow.mit.edu!bloom-picayune.mit.edu!athena.mit.edu!epeisach
- From: epeisach@athena.mit.edu (Ezra Peisach)
- Subject: Re: Papif (CAP 6.0/126) problems *almost* solved! (Q)
- Message-ID: <1993Jan27.025242.14859@athena.mit.edu>
- Sender: news@athena.mit.edu (News system)
- Nntp-Posting-Host: paris.mit.edu
- Organization: Massachusetts Institute of Technology
- References: <traurig-190193164639@skydvr.sanders.lockheed.com> <1993Jan20.221240.19026@cam.compserv.utas.edu.au> <1993Jan22.003849.2846@reed.edu>
- Date: Wed, 27 Jan 1993 02:52:42 GMT
- Lines: 13
-
- I am working out patches to such programs as papif, lwpr, etc. that will
- allow one to safely install them setuid root. In my opinion, changing
- the device permissions and setgid the program is the wrong solution as
- it still might compromise security.
-
- lwpr was easy, papif has to deal with all the forking etc. Essentially
- after the PapOpen, you are free to setuid to the normal user and still
- access the device.
-
- Solution with patch available sometime next week.
-
- Ezra Peisach
-
-