Hacker News
new
past
comments
ask
show
jobs
points
by
justincormack
4 hours ago
|
comments
by
geocar
1 hours ago
|
[-]
If the attacker can control newroot/etc/passwd they _still_ get getpwnam to return whatever userid they want. The solution is to not lookup --userspec=username:group inside the chrooted-space, but from outside.
Also, hi how's things? :)
reply
by
justincormack
27 minutes ago
|
parent
|
[-]
hi! good, how are you doing?
reply