BugTraq Post: Symlink attack in (all?) Samba. - Local root walkthrough by Tozz

Matthew Geddes mgeddes at xavier.sa.edu.au
Mon Dec 18 00:17:47 GMT 2000


"Michael B. Allen" wrote:
> 
> On Fri, Dec 15, 2000 at 12:54:17AM -0500, Scott Gifford wrote:
> > This was posted to BugTraq earlier today; thought I'd put a copy here
> > in case anybody hadn't seen it.
> 
> Has anyone ever fooled around with a chroot setup? That might be nice
> in other ways besides preventing these kind of "bugs". For example your
> Samba users are in their own passwd file.

I had it running a while back (2.0.3 maybe?). It seemed to work fine.

Matt




More information about the samba-technical mailing list