[6937] in bugtraq

home help back first fref pref prev next nref lref last post

netwatch symlink bug

daemon@ATHENA.MIT.EDU (George Sakhnovsky)
Thu Jun 11 13:50:49 1998

Date: 	Thu, 11 Jun 1998 13:00:42 -0400
Reply-To: George Sakhnovsky <promo@akula.com>
From: George Sakhnovsky <promo@AKULA.COM>
To: BUGTRAQ@NETSPACE.ORG

netwatch 0.7e (latest version on sunsite) creates a temp logfile,
/tmp/.watchlog.000, each time it's ran. it has no problem following
symlinks, so you can overwrite any file on the system. Just ln, and wait
for the admin to run it.

home help back first fref pref prev next nref lref last post