Re: Filevault and SUID Incompatibilities
Re: Filevault and SUID Incompatibilities
- Subject: Re: Filevault and SUID Incompatibilities
- From: Andrew Farmer <email@hidden>
- Date: Tue, 10 Apr 2007 16:06:04 -0700
On 10 Apr 07, at 13:52, Giovanni Donelli wrote:
Do you know the reason why FileVault prevents this kind of execution?
I thought it was a simple encrypted disk image containing the user
home directory.
FileVault is no different from any other disk image in this respect:
disk images are always mounted nosuid/nosgid/nodev. If they weren't,
you could download a disk image with a suid binary, mount it, and
gain admin access.
The fact that this applies to FileVault is an unfortunate result of
the way that it's implemented.
_______________________________________________
Cocoa-dev mailing list (email@hidden)
Do not post admin requests or moderator comments to the list.
Contact the moderators at cocoa-dev-admins(at)lists.apple.com
Help/Unsubscribe/Update your Subscription:
This email sent to email@hidden