[ale] Terminated user security question
Jim Kinney
jim.kinney at gmail.com
Sat Feb 12 20:03:43 EST 2022
I'm 99.8% convinced that a binary or script owned by just a userID number formerly associated with a deleted user can not be run by anyone but root unless set chmod 755. Cron should fail as there's no entry in passwd or ldap so no defined shell (and no crontab for the user was found).
Can't readily browse up a link that explains operation on a deleted user binary.
--
Computers amplify human error
Super computers are really cool
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://mail.ale.org/pipermail/ale/attachments/20220212/a1bbc2fb/attachment.htm>
More information about the Ale
mailing list