suid binaries on CDROM

Stelios Bounanos sb at dial.pipex.com
Mon Sep 2 23:46:01 EEST 2002


 >>>>> On Mon, 2 Sep 2002 15:15:50 -0400, Alexandros Papadopoulos
 >>>>> <apapadop at cmu.edu> was runoured to have said:

 > Xairetw()

 > As poume oti:

 > [0] Paw kai ftiaxnw ena partition mege8ous 10MB
 > [1] Tou rixnw ext2fs apo panw
 > [2] Antigrafw ena shell (px /bin/bash) ekei, kai to kanw suid root
 > [3] Ftiaxnw ena image tou partition (me to dd ypo8etw) sto arxeio img.cd
 > [4] Kaiw to img.cd se ena CDROM me ta katallhla switches

 > Ws edw exoume ena ext2fs me ena suid root shell sto CD.

 > Meta:

 > [5] Paw mia bolta se enan filo linuxa
 > [6] Kanw mount to CDROM mou (exei bare8ei na bgalei to suid bit apo to 
 > /bin/mount sto systhma tou)
 > [7] Epishs exei bare8ei na balei to option nosuid sto /etc/fstab tou.
 > [8] Ektelw to shell mou san restricted xrhsths

[0] An bgalei to suid bit tote de mporei na kanei tipota mount san
xrhsths
[1] Ligo dyskolo na yparxei grammh sto fstab poy na kanei mount to
cdrom me ext2 fs, opote mallon 8a eperepe na eixes xrhsimopoihsei
iso9660 me rock ridge extension (alla telospantwn)
[2] Gia na kaneis mount ena device san mh-root xrhsths prepei sto
fstab na yparxei to option "user" gia to device
[3] To user synepagetai nosuid, see mount(8).

 > To apotelesma einai na exw ena root shell sto kseno mhxanhma xwris na exw 
 > kanei tipota idiaitero. Einai dynaton na einai toso eykolo?

Se swsta sthmeno mhxanhma, oxi :>


Rgds,
/-sb.



More information about the Linux-greek-users mailing list