Bugtraq mailing list archives
Re: udp packet storms
From: maf () net ohio-state edu (Mark A. Fullmer)
Date: Sun, 30 Oct 1994 17:48:39 -0500 (EST)
John Hawkinson writes:
Egad, no! xinetd is HUGE, and is just way to big to run as root.
xinetd is nice, but it's very large, and has less functionality than
tcp_wrappers. Plus, there are bugs, one of which is a missing a initgroups()
which leaves you thinking a process that is running unpriviliged isn't.
Add vendors that ship with g+w directories...
xinetd.2.1.1 patchlevel 3:
*** child.c.old Mon Jul 25 21:02:03 1994
--- child.c Mon Jul 25 21:02:53 1994
***************
*** 14,19 ****
--- 14,20 ----
#include <netinet/in.h>
#include <syslog.h>
#include <errno.h>
+ #include <pwd.h>
#include "str.h"
#include "pset.h"
***************
*** 126,136 ****
--- 127,150 ----
if ( ps.ros.is_superuser )
{
int gid = sc_getgid( scp ) ;
+ struct passwd *pwd ;
if ( setgid( gid ) == -1 )
{
msg( LOG_ERR, func, "setgid failed: %m" ) ;
_exit( 1 ) ;
+ }
+
+ if (! (pwd = getpwuid ( SC_UID( scp ) ) ) )
+ {
+ msg( LOG_ERR, func, "getpwuid failed: %m" ) ;
+ _exit( 1 ) ;
+ }
+
+ if ( initgroups(pwd->pw_name, pwd->pw_gid) )
+ {
+ msg( LOG_ERR, func, "initgroups failed: %m" ) ;
+ _exit( 1 ) ;
}
}
else
grep 'setuid' other things. This error shows up in other software
too.
--
mark
maf+ () osu edu
Current thread:
- udp packet storms Tim Newsham (Oct 29)
- Re: udp packet storms Chris Ellwood (Oct 29)
- Re: udp packet storms Darren Reed (Oct 29)
- Re: udp packet storms Chris Ellwood (Oct 30)
- Re: udp packet storms Peter Wemm (Oct 30)
- Re: udp packet storms Perry E. Metzger (Oct 31)
- Re: udp packet storms Darren Reed (Oct 29)
- Re: udp packet storms Chris Ellwood (Oct 29)
- Re: udp packet storms Pat Myrto (Oct 29)
- Re: udp packet storms Darren Reed (Oct 30)
- Re: udp packet storms John Hawkinson (Oct 30)
- Re: udp packet storms Mark A. Fullmer (Oct 30)
- Re: udp packet storms Darren Reed (Oct 30)
- Re: udp packet storms Charles Howes (Oct 30)
- Re: udp packet storms Darren Reed (Oct 30)
- Re: udp packet storms Wietse Venema (Oct 30)
- Re: udp packet storms Jas (Oct 30)
- Re: udp packet storms Perry E. Metzger (Oct 30)
- Re: udp packet storms Tim Newsham (Oct 30)
- Re: udp packet storms Darren Reed (Oct 31)
- Re: udp packet storms Perry E. Metzger (Oct 31)
- Re: udp packet storms anthony baxter (Oct 31)
- Re: udp packet storms Paul 'Shag' Walmsley (Oct 31)
