logoalt Hacker News

rkeene2yesterday at 8:26 PM1 replyview on HN

A workaround might be to make all setuid/setgid files non-world-readable because then they cannot be opened at all, and thus there is no setuid file to replace the contents of.


Replies

hashstringyesterday at 9:31 PM

Eh, if you can pollute page caches this won’t safe you.

Think modifying shared libraries, ld preload, cron, I guess on some systems /etc/passwd even.

There are a lot of files readable that should definitely not be writable.

show 1 reply