Safety of ssh-agent re: fake unix sockets?

Christopher Faylor cgf@redhat.com
Wed Dec 5 13:55:00 GMT 2001


On Wed, Dec 05, 2001 at 11:48:01AM +0300, egor duda wrote:
>I'd like to stress again that cygwin is still insecure and can be
>exploited by users locally logged on, but there's no known remote
>exploits. If anyone knows about the ways to exploit cygwin remotely,
>_please_ report them to cygwin-developers mailing list.

Actually, report them here.  Posting to cygwin-developers is limited to
subscribers only.

I know that this is potentially less secure-through-obscure but I don't
know of any other way to handle this.

cgf

--
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple
Bug reporting:         http://cygwin.com/bugs.html
Documentation:         http://cygwin.com/docs.html
FAQ:                   http://cygwin.com/faq/



More information about the Cygwin mailing list