strange limitation on rcmd()

Iang iang at iang.org
Mon Jul 10 14:07:11 UTC 2006


Brian Candler wrote:

> Note that only root can bind to reserved ports.

...

> This mechanism is only valid for trusted hosts, of course. If you allow a
> random person to put their own PC on the network, they can of course send
> packets from privileged ports (either by installing Unix with their own root
> password, or by installing DOS and sending packets which come from
> privileged ports)

I gather that it is now possible to disable the
privileged ports thing on FreeBSD at least.

(Thank heavens, I say :)

iang


More information about the freebsd-security mailing list