logoalt Hacker News

geocartoday at 12:06 PM1 replyview on HN

If the attacker can control newroot/etc/passwd they _still_ get getpwnam to return whatever userid they want. The solution is to not lookup --userspec=username:group inside the chrooted-space, but from outside.

Also, hi how's things? :)


Replies

justincormacktoday at 12:55 PM

hi! good, how are you doing?

show 1 reply