[733] in linux-security and linux-alert archive
Re: [linux-security] SO_REUSEADDR
daemon@ATHENA.MIT.EDU (Olaf Kirch)
Tue May 21 12:23:39 1996
To: Sam Mortimer <csxsjm@scs.leeds.ac.uk>
Cc: linux-security@tarsier.cv.nrao.edu
Date: Mon, 20 May 1996 19:11:27 +0200
From: Olaf Kirch <okir@monad.swb.de>
On Sat, 18 May 1996 20:10:55 BST, Sam Mortimer wrote:
>
> Doesn't rpc.nfsd want _NOT_ to set SO_REUSEADDR to stop users on
> the server from running their own nfs server and thereby effectively
> gaining root on all client machines?
Right. That's an oversight on my part. A corrected version is now
available on ftp.mathematik.th-darmstadt.de:/pub/linux/okir.
Another security-related problem that came to my attention just a few days
ago is that the read_only export flag would not work properly for the latest
one or two versions. The new release fixes that as well, hopefully.
Olaf
--
Olaf Kirch | --- o --- Nous sommes du soleil we love when we play
okir@monad.swb.de | / | \ sol.dhoop.naytheet.ah kin.ir.samse.qurax
For my PGP public key, finger okir@brewhq.swb.de.