On Sat, Jul 12, 2003 at 11:43:02PM -0300, Peter Cordes wrote: > This is at least the third time this has come up that I remember. However, > absolute statements like *can not* get me thinking: Is there any any sort > of file that can't be executed from /tmp? What about statically linked ELF > binaries? /lib/ld-linux.so.2 /sbin/e2fsck.static segfaults. In five > minutes, I haven't thought of a way to execute one.
Perhaps something like SELinux, employing ACLs, could do the job? I don't know a whole lot about it. noah
pgp3cviLDX7zF.pgp
Description: PGP signature