Richard Gooch wrote:
> 
> H. Peter Anvin writes:
> > Richard Gooch wrote:
> > >
> > > Why not? It's a non-suid reservation programme. And it does look like
> > > some kind of reservation programme is required.
> >
> > Why not?  Because it relies on winning the race condition, not
> > solving it.  You can bet any number of users is going to run this in
> > their .logins.
> 
> How is that different from running a suid-root programme which first
> checks if the floppy is "unallocated" (i.e. owner root, and hope that
> root doesn't need to use it, or use a separate database: yuk) and then
> changes ownerships on the device nodes? You still need to win the
> race.
> 
> People will still be able to put this in their ~/.login
> 

This is true, but at least you won't have N scripts banging on the CPU
at random.

        -hpa

-- 
<[EMAIL PROTECTED]> at work, <[EMAIL PROTECTED]> in private!
"Unix gives you enough rope to shoot yourself in the foot."
http://www.zytor.com/~hpa/puzzle.txt

Reply via email to