do sudo default allow the sudo-user to run every program, or just the program you spesify?
how will sudo work if you use the "time" command? like "time vim /etc/passwd" anders gjære kvalito.no / concept.fr -----Original Message----- From: Michel Kaempf [mailto:[EMAIL PROTECTED] Sent: 13. juli 2001 10:45 To: debian-security@lists.debian.org Subject: Re: Sudo and Chown? On Thu, Jul 12, 2001, Ethan Benson wrote: > i am not certain that would solve it entirely though, how are you > restricting them to only chown files in a certain directory? Just an idea.. does your sudoers file protect you from attacks like the one below? sudo chown /place/chown/is/allowed/../../../../bin/sh -- MaXX -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]