Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Nmap Development: Re: Running NMAP as a non root user - patch

Re: Running NMAP as a non root user - patch

From: Richard Moore <rich_at_westpoint.ltd.uk>
Date: Mon, 16 May 2005 11:42:13 +0100

Pablo Fernández wrote:
> I wonder how a chown root nmap; chmod +s nmap; installation would be a
> security risk (given that nmap doesn't have a large vulnerability
> records (that am I aware of)). Any comments on this?

I wouldn't want to bet on a system booting if you told nmap
to write its log file to /etc/inittab! ;-)

Rich.

-- 
Richard Moore, Principal Software Engineer,
Westpoint Ltd,
Albion Wharf, 19 Albion Street, Manchester, M1 5LN, England
Tel: +44 161 237 1028
Fax: +44 161 237 1031
_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Received on May 16 2005
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos