Um, this is well documented behavior that's been around for decades. * expands to all files in the dir as arguments to whatever, if the filename is "--no-preserve-root -rf .." why shouldn't that be returned?
2014-06-26 11:40 GMT+03:00 defensecode <defensec...@defensecode.com>: > Hi, > > We wanted to inform all major *nix distributions via our responsible > disclosure policy about this problem before posting it, because it is > highly likely that this problem could lead to local root access on many > distributions. But, since part of this research contained in the document > was mentioned on some blog entries, we are forced to release it in a > full version. > > Download URL: > http://www.defensecode.com/public/DefenseCode_Unix_WildCards_Gone_Wild.txt > > Regards, > Leon Juranic > > > _______________________________________________ > Sent through the Full Disclosure mailing list > http://nmap.org/mailman/listinfo/fulldisclosure > Web Archives & RSS: http://seclists.org/fulldisclosure/ > _______________________________________________ Sent through the Full Disclosure mailing list http://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/