+++ to secure your transactions use the Bitcoin Mixer Service +++

 

Full Disclosure mailing list archives

Re: Back To The Future: Unix Wildcards Gone Wild


From: Julius Kivimäki <julius.kivimaki () gmail com>
Date: Fri, 27 Jun 2014 02:20:27 +0300

Um, this is well documented behavior that's been around for decades. *
expands to all files in the dir as arguments to whatever, if the filename
is "--no-preserve-root -rf .." why shouldn't that be returned?


2014-06-26 11:40 GMT+03:00 defensecode <defensecode () defensecode com>:

Hi,

We wanted to inform all major *nix distributions via our responsible
disclosure policy about this problem before posting it, because it is
highly likely that this problem could lead to local root access on many
distributions. But, since part of this research contained in the document
was mentioned on some blog entries, we are forced to release it in a
full version.

Download URL:
http://www.defensecode.com/public/DefenseCode_Unix_WildCards_Gone_Wild.txt

Regards,
Leon Juranic


_______________________________________________
Sent through the Full Disclosure mailing list
http://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: http://seclists.org/fulldisclosure/


_______________________________________________
Sent through the Full Disclosure mailing list
http://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: http://seclists.org/fulldisclosure/


Current thread: