Re[2]: [Full-Disclosure] Another IE trick (Re: IE sucks : sun java virtual machine insecure tmp file creation)
From: 3APA3A <3APA3A@SECURITY.NNOV.RU>
Date: Fri Jul 09 2004 - 12:41:58 EDT
Dear Eric Paynter,
Yes, it's possible and I always recommend to deny execution in user's
--Friday, July 9, 2004, 8:26:23 PM, you wrote to full-disclosure@lists.netsys.com:
EP> On Fri, July 9, 2004 7:43 am, http-equiv@excite.com said:
EP> I think:
EP> mount /dev/xxxx /tmp -o noexec
EP> would reduce the risk significantly. Can you do something equivalent in
EP> -Eric
EP> --
EP> _______________________________________________
-- ~/ZARAZA Существую лишь я сам, никуда не летя. (Лем) _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.htmlReceived on Fri Jul 09 13:04:30 2004 This archive was generated by hypermail 2.1.8 : Fri Jul 09 2004 - 14:03:07 EDT |
Custom Search
|