I feel like I have done exactly that.
Or are you excluding world r/w files that can’t be gotten to? I.e. in a directory that is 0700?
What about a hard link created in a different directory that is accessible?
@ssrjazz do you have input here?
-
-
Replying to @DrScriptt @marcan42
Yes creating a hard link to an inode may be tricky, but it’s not impossible.
1 reply 0 retweets 0 likes -
Replying to @DrScriptt
Uh, no, that's impossible (without using root-only debug facilities). Doing so would be a massive security hole.
1 reply 0 retweets 0 likes -
Replying to @marcan42
I’m fairly certain that it is possible to create a hard link to an inode even if you can’t access the directory that the other file linked to the inode is in.
@ssrjazz what do you think? o+w on the inode in question and +w on the directory I’m creating the new link in.1 reply 0 retweets 0 likes -
Replying to @DrScriptt @ssrjazz
Write the code, file the CVE, and get the sweet PoC karma then ;-)
1 reply 0 retweets 0 likes -
Nope. I don’t know how to do it myself. Besides I believe that I’ve read about it multiple times in the past. So nothing new.
1 reply 0 retweets 0 likes -
-
Quick search undeleting open files returns debugfs to create new links to an inode. You just need the inode number and a place to create the link.
2 replies 0 retweets 0 likes -
I’m confident that there are other ways to create a new link to an existing inode.
3 replies 0 retweets 0 likes -
I’m sure that I’ve read about people writing small programs to do exactly this.
2 replies 0 retweets 0 likes
Again, please find one for me then. This isn't rocket science; the onus is on you to prove that this is, indeed, possible, just like every other security issue. I'm not going to do a formal audit of the Linux kernel to prove that it isn't.
-
-
I'm not asking you to do so. I'm sharing my belief. What you do with it (or not) is up to you.
0 replies 0 retweets 0 likesThanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.