Re: security problem with fat32 on suse 9.0

From: /dev/rob0 (rob0_at_gmx.co.uk)
Date: 01/28/04


Date: Wed, 28 Jan 2004 12:03:31 -0800

In article <bv8ovi$phbhn$1@ID-47665.news.uni-berlin.de>,
  Gregor Ries wrote:
> NeoSadist wrote:
>> Experience: fat32 is insecure and has lots of virii that can attack it.
>> Advice: find a different way to do what you need without using FAT32.
>>
> You are completely right - but I need to have dataexchange on one

Is he? This is news to me. What can a virus do to a FAT32 filesystem?
What vulnerabilities are specific to FAT32 (or to any type of DOS
filesystem, for that matter)?

Yes, it could be erased if some viral code executes under a DOS or
Windows OS. It could similarly be erased using "rm -rf /path-to/vfat"!
This has nothing to do with the filesystem!

> computersystem - and for this fat 32 is the only solution I know....

Let's nip the FUD in the bud.

FAT filesystems are well-supported under just about any OS you might
care to use -- MS's forced-upgrade policies for Win95 retail and WinNT
notwithstanding. There is absolutely nothing wrong from a security
standpoint with FAT32 (the vfat driver in Linux.) Simply be aware that
DOS filesystems are too primitive to support ownership and permission
attributes.

> So if you have nevertheless an idea for such unsecure filesystem...

IIRC from your OP, your answers should all be found in the man pages for
mount(8) and fstab(5).

-- 
  /dev/rob0 - preferred_email=i$((28*28+28))@softhome.net
  or put "not-spam" or "/dev/rob0" in Subject header to reply


Relevant Pages

  • Re: DOSs future
    ... > Bill Cunningham wrote: ... and also a 64bit filesystem could be added ... > because of limited memory). ... still going to use the old OSs like UNIX, DOS and so on. ...
    (comp.os.msdos.programmer)
  • Re: Chinesische Faelschungen von USB-Infrarotports
    ... Kein System kann man einfach so abschalten ohne Fehler im Filesystem ... Die SW-Leute fuer so etwas sind sehr teure Spezialisten, das beherrschen nur wenige. ... Das einzige Mal, dass mir bei DOS das System oder Files abgekracht sind war, als ich meine ersten Gehversuche mit dem C 7.0 Compiler machte und partout gleich eine Videogeschichte ausprobieren musste, bei der direkt in die VGA Karte geschrieben wurde. ...
    (de.sci.electronics)
  • Re: reiser4 plugins
    ... Horst von Brand wrote: ... Do you use DOS? ... But, there are some things Reiser does better and faster than ext3, even ... > filesystem has implemented it. ...
    (Linux-Kernel)
  • Re: FreeBSD && MP3 Players
    ... > filesystem used on them is dos, so you can simply mount them using ... while they're not there yet (the largest capacity iPod-Photo from Apple ...
    (freebsd-questions)
  • Re: Seeing VERSIONINFO under Vista?
    ... Filesystem is completely handled by Windows. ... There isn't really any of DOS doing anything. ... code (either by standard Windows-supplied drivers or by a vendor-specicific ...
    (microsoft.public.vc.mfc)