Mike Neuman wrote:
> 
> > Well, i think it would just take some time to bring it into working shape.
> > Plus there is another thing i do not understand. (Just if anyone here
> > tried this code as well) Its being just a restricted shell, but INSTALL
> > advices to have it suid:
> 
>   It must be suid to work at all.

I'm using it on our site non-suid-root for over a month. I had to do
that 
b/c our users need programs many of which have some file processing
capabilitis. 
This would have given them access to _ALL_ files.

> > with lots of buffer overruns, i think that's extremely dangerous.
> 
>   Probably so. If you've found problems, please patch them. I integrate every
> patch I receive into Osh, and it's been over a year since I received any.
> 
> -Mike

-- 
Shahin Merat   /   [EMAIL PROTECTED]
Shiraz University of Medical Sciences

Reply via email to