Come on Pavel, in order to make this happen, you have to
a) run the installer as root
b) know the next pid which will be allocated
c) put the symlink in /tmp/installer$pid
Exploit: Make all 65535 $pid simlinks
It's very exploitable actually, and is similar in vein to
all the ancient mktemp stuff.
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/