[Top][All Lists]
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: PATCH: proc_do_stop and rpctrace
From: |
Marcus Brinkmann |
Subject: |
Re: PATCH: proc_do_stop and rpctrace |
Date: |
Fri, 15 Aug 2003 23:14:39 +0200 |
User-agent: |
Mutt/1.5.4i |
On Sat, Aug 09, 2003 at 05:33:29PM -0400, Roland McGrath wrote:
> The concern I have about this patch per se is proc calling thread_resume on
> a random port from the user. This is at least a DoS opportunity. It also
> points to a more general problem rpctrace has--servers make comparisons
> between ports from the user (rpctrace) and ports outside rpctrace's sphere
> of interposition. I bet "rpctrace ln foo bar" (dir_link) gets EXDEV too.
Shall I revert the patch?
Thanks,
Marcus
--
`Rhubarb is no Egyptian god.' GNU http://www.gnu.org address@hidden
Marcus Brinkmann The Hurd http://www.gnu.org/software/hurd/
address@hidden
http://www.marcus-brinkmann.de/