On Thu, Oct 27, 2011 at 9:43 AM, xD 0x41 <sec...@gmail.com> wrote: > [SNIP] > > This means that right after the "ln" command AND before "/tmp/dd" is > launched, the user can replace the directory "/tmp/dd" by a shell script > with the same name ("/tmp/dd"). > > You try to change and fiddle here, it would need alot better than just > the current shell scripting, and, even then, i dnt think it would win > the race conditiobn. See Bishop and Dilger's paper: nob.cs.ucdavis.edu/bishop/papers/1996-compsys/racecond.pdf
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/