Local users get to play root?

Konstantin Ryabitsev icon at fedoraproject.org
Wed Nov 18 19:08:36 UTC 2009


2009/11/18 Casey Dahlin <cdahlin at redhat.com>:
> On 11/18/2009 01:22 PM, James Antill wrote:
>>
>> 3. Are there any attacks due to disk space used? Eg. If /var is low² I
>> can probably install enough pkgs to make logging stop.
>>
>
> I'm betting there's still enough systems out there without enough space in /usr for the entire package set.

That's kind of a silly exercise in what-ifs. The default anaconda
partition scheme is /boot, <swap>, and /. If someone wanted to fill up
the disk, they can just write to /tmp on a default install.

Regards,
-- 
McGill University IT Security
Konstantin Ryabitsev
Montréal, Québec




More information about the fedora-devel-list mailing list