check out pratical Unix Security by O'Reilly & Associates.
on Unix Mail.
Frank
>
> On Tue, 3 Dec 1996, Security Mail wrote:
>
> > This indeed was a Hoax! No Virus can wipe the hard disk just by reading
> > an e-mail message. BUT, this message below told of an attachment that if
> > run would cause dammage!
>
> This is not true on Unix! Many Unix mailers and pagers will send
> escape codes to the tty. The good ones will not, but many of
> the old ones will. This will allow a mail message to control the
> terminal. Many terminals has escape codes to send text back to
> the host. QED the mail message can do anything the user has privs
> to do.
>
> --
> Darryl Wagoner darryl @
sai .
com http://www.sai.com/
> Office: 603.672.0736 Fax: 603-672-4846
> Beware of self-styled experts: an ex is a has-been, and a spurt is a
> drip under pressure.
>
>
>
|
|