[10059] in bugtraq
Re: Bug in xfs
daemon@ATHENA.MIT.EDU (Roman Drahtmueller)
Wed Mar 31 13:47:27 1999
Date: Wed, 31 Mar 1999 05:10:14 +0200
Reply-To: Roman Drahtmueller <draht2@RZLIN1.RUF.UNI-FREIBURG.DE>
From: Roman Drahtmueller <draht2@RZLIN1.RUF.UNI-FREIBURG.DE>
X-To: Trabinski <lukasz@LT.WSISIZ.EDU.PL>
To: BUGTRAQ@NETSPACE.ORG
In-Reply-To: <Pine.LNX.4.10.9903292354300.1677-100000@lt.wsisiz.edu.pl>
[snip]
> [lukasz@lt /tmp]$ ls -all /etc/shadow
> -r-------- 1 root root 544 Mar 30 00:04 /etc/shadow
[snip]
> [root@lt /root]# xfs &
[snip]
> [lukasz@lt /tmp]$ ls -all /etc/shadow
> -rwxrwxrwt 1 root root 544 Mar 30 00:04 /etc/shadow
[snip]
> Solution, As root before run xfs, make rm -rf /tmp/.font-unix
For sure this needs to be fixed. Your "solution" introduces a race
condition, though, if the font server is started when users are
allowed to log on.
A better interim aid is not to run xfs as root in the first place. In
fact, why would one want to run things as root if not necessary?
Roman.
Computer Center University of Freiburg, Germany.
"The whole world is about three drinks behind." (Humphrey Bogart)