Browse Source

setgid games, not setuid games. closes a neat set of holes

OPENBSD_2_1
deraadt 27 years ago
parent
commit
738ff8df41
3 changed files with 10 additions and 11 deletions
  1. +0
    -1
      src/etc/master.passwd
  2. +8
    -8
      src/etc/mtree/4.4BSD.dist
  3. +2
    -2
      src/etc/mtree/special

+ 0
- 1
src/etc/master.passwd View File

@ -3,6 +3,5 @@ daemon:*:1:31::0:0:The devil himself:/root:/sbin/nologin
operator:*:2:20::0:0:System &:/usr/guest/operator:/sbin/nologin
bin:*:3:7::0:0:Binaries Commands and Source,,,:/:/sbin/nologin
uucp:*:66:1::0:0:UNIX-to-UNIX Copy:/var/spool/uucppublic:/usr/libexec/uucp/uucico
games:*:7:13::0:0:Games pseudo-user:/usr/games:/sbin/nologin
nobody:*:32767:32767::0:0:Unprivileged user:/nonexistent:/sbin/nologin
ingres:*:267:74::0:0:& Group:/usr/ingres:/sbin/nologin

+ 8
- 8
src/etc/mtree/4.4BSD.dist View File

@ -1,4 +1,4 @@
# $OpenBSD: 4.4BSD.dist,v 1.27 1996/12/19 02:31:17 millert Exp $
# $OpenBSD: 4.4BSD.dist,v 1.28 1996/12/19 22:19:50 deraadt Exp $
/set type=dir uname=root gname=wheel mode=0755
# .
@ -113,7 +113,7 @@ bin
games
# ./usr/games/hide
hide gname=games uname=games mode=0700
hide gname=games uname=root mode=0550
# ./usr/games/hide
..
@ -1457,13 +1457,13 @@ ns
..
# ./var/games
games uname=games gname=games mode=0775
games uname=root gname=games mode=0755
# ./var/games/hackdir
hackdir uname=games gname=games mode=0775
hackdir uname=root gname=games mode=0775
# ./var/games/hackdir/save
save uname=games gname=games mode=0770
save uname=root gname=games mode=0770
# ./var/games/hackdir/save
..
@ -1471,17 +1471,17 @@ save uname=games gname=games mode=0770
..
# ./var/games/hackdir/save XXX
save uname=games gname=games mode=0775
save uname=root gname=games mode=0775
# ./var/games/hackdir/save XXX
..
# ./var/games/larn
larn uname=games gname=games mode=0775
larn uname=root gname=games mode=0775
# ./var/games/larn
..
# ./var/games/phantasia
phantasia uname=games gname=games mode=0775
phantasia uname=root gname=games mode=0775
# ./var/games/phantasia
..


+ 2
- 2
src/etc/mtree/special View File

@ -1,4 +1,4 @@
# $OpenBSD: special,v 1.8 1996/12/15 20:21:56 millert Exp $
# $OpenBSD: special,v 1.9 1996/12/19 22:19:51 deraadt Exp $
# $NetBSD: special,v 1.4 1996/05/08 21:30:18 pk Exp $
# @(#)special 8.2 (Berkeley) 1/23/94
#
@ -76,7 +76,7 @@ usr type=dir mode=0755 uname=root gname=wheel
bin type=dir mode=0755 uname=root gname=wheel ignore
.. #usr/bin
games type=dir mode=0755 uname=root gname=wheel optional
hide type=dir mode=0700 uname=games gname=games optional ignore
hide type=dir mode=0700 uname=root gname=wheel optional ignore
.. #usr/games/hide
.. #usr/games
include type=dir mode=0755 uname=root gname=bin ignore


Loading…
Cancel
Save