Identi.ca Identi.ca
  • Login
  • Public

    • Public
    • Groups
    • Featured
    • Popular

Conversation

Notices

  1. Henson Sturgill Henson Sturgill Arch Linux

    !archlinux users, what's the security risk of having the x bit on your home directory set? Local users being able to list files?

    Sunday, 26-Sep-10 07:01:10 UTC from web at Town of Canton, North Carolina, United States
    • Michel Alexandre Salim Michel Alexandre Salim

      @hensondsturgill worse than that. R = listing a directory, X = access. For files with o=r permission, if you know the name you can read it

      Sunday, 26-Sep-10 07:39:14 UTC
    • Pete Lewis Pete Lewis

      @hensondsturgill local users can cd into it. IIRC +r is enough to list files...

      Sunday, 26-Sep-10 09:49:10 UTC
    • Henson Sturgill Henson Sturgill Pete Lewis

      @petelewis You're right. I guess what I don't understand is, what's dangerous about being able to cd into it?

      Sunday, 26-Sep-10 13:02:15 UTC
    • Michel Alexandre Salim Michel Alexandre Salim

      @hensondsturgill Look inside your ~ and see how many files have 644 perms. chmod o-x ~ blocks access to these and make your $HOME safer

      Monday, 27-Sep-10 07:31:11 UTC

Site notice

  • API
  • Status

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

Identi.ca is a microblogging service brought to you by Status.net. It runs the StatusNet microblogging software, version 1.1.0-alpha1, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All Identi.ca content and data are available under the Creative Commons Attribution 3.0 license.

Switch to mobile site layout.

Built in Montreal