Re: inode->i_count security hole

MOLNAR Ingo (mingo@chiara.csoma.elte.hu)
Mon, 12 Jan 1998 23:08:45 +0100 (CET)


On Mon, 12 Jan 1998, Chris Evans wrote:

> I've read about the recently discovered inode counting security hole
> (ugh). Perhaps its worth a quick audit to see what other counters
> malicious users could overflow....??

i've done a quick audit and i_count seems to be the only 16 bit counter
that is not limited by some resource limit.

-- mingo