Gentoo Archives: gentoo-security

From: Piotr Kalinowski <pitkali@××.pl>
To: gentoo-security@l.g.o
Subject: Re: [gentoo-security] SOLUTION: Prevent users to login directly
Date: Thu, 29 Jul 2004 07:40:40
Message-Id: 200407290940.13816.pitkali@o2.pl
In Reply to: Re: [gentoo-security] SOLUTION: Prevent users to login directly by Greg Watson
1 On Wednesday 28 of July 2004 22:24, Greg Watson wrote:
2 > | Not if it's chown'ed root:portage and chmod'ed 440
3 >
4 > Wrong, if a user has +w mode to a directory they can forcefully remove a
5 > file. Try it
6
7 440 does not give write acces to anybody.
8
9 Regards,
10
11 --
12 * Piotr (pitkali) Kalinowski * mailto: pitkali (at) o2 (dot) pl *
13 * Registered Linux User No. 282090 * Powered by Gentoo Linux *
14 * Fingerprint: D5BB 27C7 9993 50BB A1D2 33F5 961E FE1E D049 4FCD *

Replies

Subject Author
Re: [gentoo-security] SOLUTION: Prevent users to login directly William Yang <wyang@××××.net>