Beefy Boxes and Bandwidth Generously Provided by pair Networks Bob
"be consistent"
 
PerlMonks  

Re: Perl "PERLIO_DEBUG" Privilege Escalation Vulnerabilities

by dragonchild (Archbishop)
on Feb 04, 2005 at 14:08 UTC ( [id://428161]=note: print w/replies, xml ) Need Help??

This is an archived low-energy page for bots and other anonmyous visitors. Please sign up if you are a human and want to interact.


in reply to Perl "PERLIO_DEBUG" Privilege Escalation Vulnerabilities

Solution:
Only grant trusted users access to affected systems.

There's another one - don't use setuid root perl scripts. They are the Unix equivalent of the Trusted Zone in Win32, with the same inherent structural issues.

Being right, does not endow the right to be rude; politeness costs nothing.
Being unknowing, is not the same as being stupid.
Expressing a contrary opinion, whether to the individual or the group, is more often a sign of deeper thought than of cantankerous belligerence.
Do not mistake your goals as the only goals; your opinion as the only opinion; your confidence as correctness. Saying you know better is not the same as explaining you know better.

  • Comment on Re: Perl "PERLIO_DEBUG" Privilege Escalation Vulnerabilities

Log In?
Username:
Password:

What's my password?
Create A New User
Domain Nodelet?
Node Status?
node history
Node Type: note [id://428161]
help
Sections?
Information?
Find Nodes?
Leftovers?
    Notices?
    hippoepoptai's answer Re: how do I set a cookie and redirect was blessed by hippo!
    erzuuliAnonymous Monks are no longer allowed to use Super Search, due to an excessive use of this resource by robots.