3 ms·
I’ve never seen a distro that didn’t grant read permission to everyone for /sbin and /usr/sbin. In any event, it doesn’t really make sense to me to deny read a
by brirec 3y ago
I’ve never seen a distro that didn’t grant read permission to everyone for /sbin and /usr/sbin.
In any event, it doesn’t really make sense to me to deny read access for any executables, so long as you don’t also deny read access to Python or a C compiler.
Really, if permission mode bits are the only thing preventing damage from such tools your vulnerability is not within your path or mode bits.