| aug2000.tar |
New Messages
I received a few more letters in regard to Didier Racheneurs article on SUID programs. We responded to the main points of objection in the July issue, so I wont cover those again. However, one reader pointed us to an interesting related item. See the following:
From: Magnus Bodin <magnus@bodin.org>
http://sendmail.net/?feed=000607linuxbugA serious bug has been discovered in the Linux kernel that can be used by local users to gain root access. The problem, a vulnerability in the Linux kernel capability model, exists in kernel versions up to and including version 2.2.15. According to Alan Cox, a key member of the Linux developer community, It will affect programs that drop setuid state and rely on losing saved setuid, even those that check that the setuid call succeeded. /magnus We appreciate all your letters. Keep writing! AA
Hello Amber, I would like to offer a suggestion for her column, which Im also forwarding to her. I think it would be very helpful if a top ten book selection for specific topic areas was included on a monthly basis. This would be an extremely useful reference for myself, and Im sure many others when we are looking for high-quality books in our day to day jobs. Again, thank you for producing such a useful magazine.
Sincerely, Thanks for the compliment. Were planning to post a Top Ten Books List on the Web site soon. AA
Subject: Sys Admin Feedback I read the article on BSD systems administration on your Web site. I think the author, Michael Lucas wrote an excellent article. The article uncovers the inner workings of the BSD booting process in a very understandable way. Still, it has much more in-depth covering of the subject than most other articles. I was not even aware of the existence of your magazine previously. But keep publishing articles like this, with actual content in it, and you will have my undivided attention.
Thanks, Thank you. Note that another article from Michael Lucas will appear next month in the September issue, entitled: FreeBSDs sysctl Interface. I hope youll enjoy it also. AA
Dear Sys Admin,
Sincerely,
Nick,
SUNWCuser is enduser distribution
Sorry about that. |