Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Insecure pty permissions in OS X < 10.4 May 01 2005 09:14AM
Matt Johnston (matt ucc asn au)
Hi all.

Mac OS X 10.3.x and earlier doesn't provide any mechanism
for non-setuid-root programs to change permissions on ptys.

Hence xterms, screen sessions, and Terminal.app windows (with
explicitly specified commands) are vulnerable to tty
sniffing. Note that using Terminal.app's standard termina...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus