Re: Samba 3.x + kernel 2.6.x local root vulnerability

From: Darren Reed (avalon_at_caligula.anu.edu.au)
Date: 02/12/04

  • Next message: Trustix Security Advisor: "TSLSA-2004-0006 - mutt"
    To: frank@openminds.be (Frank Louwers)
    Date: Thu, 12 Feb 2004 11:50:47 +1100 (Australia/ACT)
    
    

    Cute, so the security problems of NFS are being reinvented with SMBFS.
    I hope that traditional mount options such as "nosuid" will work ?

    Also, can you create character/block device files on an smbfs partition
    that you have root locally (and not remotel) to get you access to things
    like /dev/kmem, etc ?

    Darren


  • Next message: Trustix Security Advisor: "TSLSA-2004-0006 - mutt"

    Relevant Pages

    • Re: Which network FS?
      ... I tried smbfs which seemed simplest given that I already had samba ... I've heard that NFS can be a bit of a nightmare. ... >OK really eg with Debian config tools? ... then samba is going to be the easiest to do.. ...
      (uk.comp.os.linux)
    • Re: [SLE] pam_mount
      ... > nosuid and nodev are for NFS. ... smbfs does not support them anyway. ... > Yet the same kind of mystical hope that makes people buy lottery tickets ...
      (SuSE)
    • Re: tar + split + dd + EOF + st0
      ... I haven't used smbfs much lately but NFS doesn't have this limitation. ... I use tar to back up all of our Linux machines directly to tape over NFS without this problem and we have some very large files. ... Since the way to join files that have been "split" is to "cat" them back to a new file, you should use the cat command that John-Paul Stewart recommends. ...
      (comp.os.linux.misc)
    • Re: Anyone seeing any NFS lockups/weirdness with latest (ish) current??
      ... months)...not only with nfs, with smbfs too...I didn't find out ... vi needs to be upgraded to vii ... To unsubscribe, ...
      (freebsd-current)
    • Which network FS?
      ... I tried smbfs which seemed simplest given that I already had samba ... The main alternatives without "experimental" status seem to be CIFS, NFS ... OK really eg with Debian config tools? ...
      (uk.comp.os.linux)