svn commit: r318313 - head/libexec/rtld-elf

Alexey Dokuchaev danfe at FreeBSD.org
Mon May 15 19:36:10 UTC 2017


On Mon, May 15, 2017 at 10:25:29PM +0300, Konstantin Belousov wrote:
> On Mon, May 15, 2017 at 01:08:55PM -0600, Ian Lepore wrote:
> > Well, for example, it seems like it would allow anyone to execute a
> > binary even if the sysadmin had set it to -x specifically to prevent
> > people from running it.
> 
> The direct mode does not (and cannot) honor set{u,g}id modes of the
> executable, so any binary run this way would only exercise the existing
> power of the user which did it.
> 
> The most advanced explanation that I was given in private was among
> the lines: "if you have an environment where users can upload content
> to a shared server, but have no access to chmod(2), no compilers, no
> scripting languages, etc." The person then admitted that (s)he does not
> consider it as an actual concern.

Would this now allow executing binaries (with or without +x bit) from
filesystems mounted with -o noexec?

./danfe


More information about the svn-src-all mailing list