Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id ; Thu, 4 Oct 2001 01:49:49 -0400 Received: (majordomo@vger.kernel.org) by vger.kernel.org id ; Thu, 4 Oct 2001 01:49:41 -0400 Received: from neon-gw-l3.transmeta.com ([63.209.4.196]:60935 "EHLO neon-gw.transmeta.com") by vger.kernel.org with ESMTP id ; Thu, 4 Oct 2001 01:49:31 -0400 Date: Wed, 3 Oct 2001 22:49:27 -0700 (PDT) From: Linus Torvalds To: Alexander Viro cc: Subject: Re: Security question: "Text file busy" overwriting executables but not shared libraries? In-Reply-To: Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: linux-kernel-owner@vger.kernel.org X-Mailing-List: linux-kernel@vger.kernel.org On Thu, 4 Oct 2001, Alexander Viro wrote: > > I _really_ doubt that something does write() on /etc/passwd. Create a > file and rename it over the thing - sure, but that's it. > Well, yeah, bad choice. Can you believe /var/run/utmp or similar? And yes, we could add checks for the thing being executable before we accept MAP_DENYWRITE instead of just ignoring the flag from user space. Nobody has cared enough to make the effort. Until now? Linus - To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/