Settings

Theme

Rootless Sniffing

lude.rs

57 points by g3ol4d0 5 years ago · 3 comments

Reader

thunderbong 5 years ago

Wonderful! But isn't this a security loophole?

  • mschuster91 5 years ago

    It is. I wonder why the socket is in /tmp and not in /run or at least a sub-directory that can be chmod -w to prevent a renaming attack. Debian/Ubuntu already do this by placing the socket in /run/php/phpXX-fpm.sock...

    If I were to guess, this image is some Alpine or other self-assembled stuff instead of using a decent distribution as base.

    • c0l0 5 years ago

      /tmp/. has the sticky bit set (+1000), so renaming any files in there is not allowed for anyone but that particular inode's owner user (or UID 0, of course). If your socket directory with important UNIX domain socket inodes isn't similarly protected, that's a problem.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection