Re: How much libsvn_repos wrap around the libsvn_fs
From: Michael Wood <mwood_at_its.uct.ac.za>
Date: 2003-01-06 07:47:26 CET
On Fri, Jan 03, 2003 at 01:35:10PM -0500, Seth W. Klein wrote:
Well, I doubt Subversion was ever meant to be run setuid. In general,
If you ran svn setuid to "svn" and had the repository only writable by
Actually, I've just thought of a trivial exploit. Set EDITOR to /bin/sh
-- Michael Wood <mwood@its.uct.ac.za> --------------------------------------------------------------------- To unsubscribe, e-mail: dev-unsubscribe@subversion.tigris.org For additional commands, e-mail: dev-help@subversion.tigris.orgReceived on Mon Jan 6 07:49:08 2003 |
This is an archived mail posted to the Subversion Dev mailing list.
This site is subject to the Apache Privacy Policy and the Apache Public Forum Archive Policy.