From mboxrd@z Thu Jan 1 00:00:00 1970 X-Spam-Checker-Version: SpamAssassin 3.4.4 (2020-01-24) on inbox.vuxu.org X-Spam-Level: X-Spam-Status: No, score=-0.8 required=5.0 tests=DKIM_INVALID,DKIM_SIGNED, MAILING_LIST_MULTI,T_SCC_BODY_TEXT_LINE autolearn=ham autolearn_force=no version=3.4.4 Received: (qmail 2244 invoked from network); 1 Aug 2023 21:11:35 -0000 Received: from minnie.tuhs.org (2600:3c01:e000:146::1) by inbox.vuxu.org with ESMTPUTF8; 1 Aug 2023 21:11:35 -0000 Received: from minnie.tuhs.org (localhost [IPv6:::1]) by minnie.tuhs.org (Postfix) with ESMTP id 4AE224106B; Wed, 2 Aug 2023 07:11:31 +1000 (AEST) Received: from wout4-smtp.messagingengine.com (wout4-smtp.messagingengine.com [64.147.123.20]) by minnie.tuhs.org (Postfix) with ESMTPS id A7EDA41064 for ; Wed, 2 Aug 2023 07:11:26 +1000 (AEST) Received: from compute2.internal (compute2.nyi.internal [10.202.2.46]) by mailout.west.internal (Postfix) with ESMTP id A144B3200905 for ; Tue, 1 Aug 2023 17:11:25 -0400 (EDT) Received: from mailfrontend2 ([10.202.2.163]) by compute2.internal (MEProxy); Tue, 01 Aug 2023 17:11:25 -0400 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ronnatalie.com; h=cc:content-transfer-encoding:content-type:content-type:date :date:from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:reply-to:sender:subject:subject:to:to; s= fm2; t=1690924285; x=1691010685; bh=UyuAB0nbHooFZRmyf2BqktbuZX5N 0r5ZD4+QvSjkirg=; b=uk2S7MO5+whCO4vvab5hFRB2CPE/VsW2HxpRVoRwFENi 4MT0j3Lh3uEwQATUSYuBdchig1fDxiLLJQOALFYXmA7oh/J/9Qe8GgzwaawjzXUQ Rg4RO4AiEg3+EKE8qSUNiCN1zCCmATxJFs1NnPoXhWya4PNCsVUYZpsmOaLkXs7y sTOueFeNF9DslL7BoWRz8qnVkpE75b5/az1le8liue/ypzf5LoiIP4XmotI+SX5M bPFzrsZ1c4B46KcJPYKP5y2cxsYBj5vgaPwsljnGZPqNYJVPPSH2qASXivMKkazc JVAgoiI+ynBZZXHVMUhr7mwMPjR3n+UN7df6vokTKg== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:content-transfer-encoding:content-type :content-type:date:date:feedback-id:feedback-id:from:from :in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:reply-to:sender:subject:subject:to:to:x-me-proxy :x-me-proxy:x-me-sender:x-me-sender:x-sasl-enc; s=fm3; t= 1690924285; x=1691010685; bh=UyuAB0nbHooFZRmyf2BqktbuZX5N0r5ZD4+ QvSjkirg=; b=NKeAlPWOsuLxsCnihZexy0GZZRxe8vF0V33s3Uia5FVnTEjLaJ2 rMoLzi8neWwhO2TSWD01XtAoFx6x3Sjrqw4qs25lC6Ma0oIGXJaxYyYQ6nHKtWY4 NC3/8RmI+LgHWl4tYNLS33Ao/oH13hn+4/KjQpOqJQOAQ7PN1+Gr+mBKl213rdS5 wNkgRLXFPl9xnO8CREb6P69xTVJoTkbPtayekiuwaTNhdfBVRqQsBUnvELvF0fGV ioZab7O0wPcQwxcnijWGSNUTQG6VlWZlbbHgpYwdg/rAlAwIHN+zCFUSJ/jezjVp B+qbUqN4/9m6TxZQ+g9rRK3pWKFA+vYFvPw== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedviedrjeeigdduheehucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucenucfjughrpefhvffufffkjghfrhgfgggtgfesth hqredttderjeenucfhrhhomhepfdftohhnucfprghtrghlihgvfdcuoehrohhnsehrohhn nhgrthgrlhhivgdrtghomheqnecuggftrfgrthhtvghrnhepffduteevteffueethfelle dvtdefhfekhfdvgfehudejveeijeekvddvtdejveegnecuvehluhhsthgvrhfuihiivgep tdenucfrrghrrghmpehmrghilhhfrhhomheprhhonhesrhhonhhnrghtrghlihgvrdgtoh hm X-ME-Proxy: Feedback-ID: iaba146ad:Fastmail Received: by mail.messagingengine.com (Postfix) with ESMTPA for ; Tue, 1 Aug 2023 17:11:24 -0400 (EDT) From: "Ron Natalie" To: "The Eunuchs Hysterical Society" Date: Tue, 01 Aug 2023 21:11:24 +0000 Message-Id: In-Reply-To: <20230801204800.wvlfp%steffen@sdaoden.eu> References: <20230801204800.wvlfp%steffen@sdaoden.eu> User-Agent: eM_Client/9.2.1841.0 MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: quoted-printable Message-ID-Hash: Z7MGNNPKBXZUTVSERB6GYACST7LI5LMO X-Message-ID-Hash: Z7MGNNPKBXZUTVSERB6GYACST7LI5LMO X-MailFrom: ron@ronnatalie.com X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header X-Mailman-Version: 3.3.6b1 Precedence: list Reply-To: Ron Natalie Subject: [TUHS] Re: shell escapes in utilities List-Id: The Unix Heritage Society mailing list Archived-At: List-Archive: List-Help: List-Owner: List-Post: List-Subscribe: List-Unsubscribe: Even without shell escapes there are fun and cames with abusing setuid=20 (but accessible) programs. Things like opening all the available file descriptors, closing=20 stdin/out/err before invocation, doing things to overrun buffers, etc=E2=80= =A6