Re: SECURITY HOLE in namei.c ??

Matt Hawkins (matt@blitzen.canberra.edu.au)
Mon, 2 Sep 1996 13:14:35 +1000 (EST)


On Sun, 1 Sep 1996, Herbert Rosmanith wrote:

> > I may be wrong or have passed this theme, but how is it possible for a
> > user to delete Files and Dirs, for them he has no write permissions!!
>
> if the user owns the directory, that's legal. this is unix, not vms.

Said user could also be the 'superuser' - or this this special case
handled differently?

-- Matt

,---------------------------.\|/ ____ \|/ /\ ___________
| -* Mostly Harmless ! *- | @~/ ,. \~@ / \/\ ,'Don't Panic|
`--------------------------(_/_( \__/ )_\ __ /`/ / \ `.___________|
matt@blitzen.canberra.edu.au----\__U_/-----' `--------------------||-----