Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: Re: hole in sudo for MP-RAS.

Re: hole in sudo for MP-RAS.

From: Todd C. Miller <Todd.Miller_at_COURTESAN.COM>
Date: Tue, 13 Jan 1998 08:41:26 -0700

Actually, that line should just be:
    if (strchr(cmnd, '/') == NULL)

This is fixed in version 1.5.4, available from:
    ftp://ftp.cs.colorado.edu/pub/sysadmin/sudo/cu-sudo.v1.5.4.tar.Z
    ftp://ftp.courtesan.com/pub/sudo/cu-sudo.v1.5.4.tar.Z (very slow link)

 - todd
Received on Jan 13 1998

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos