Re: 3dfx - a security hazard?

Krzysztof G. Baranowski (kgb@manjak.knm.org.pl)
Fri, 12 Mar 1999 10:52:52 +0100 (EET)


On Thu, 11 Mar 1999, Tigran Aivazian wrote:
> But, as I said, Alan is always right, so I am merely curious
> as to what am I missing here.
3Dfx driver was written to allow safe access to 3Dfx boards
by non-root users. The problem is that it doesn't play it's
role well, because any user with access to /dev/3dfx can
write to arbitrary PCI config space of the card -> look at
doQueryUpdate(). In other words it gives you nothing over
'+s' stuff.

Kris

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/