Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




Vulnerability Development mailing list archives

volcheck and sol 8
From: mpotter () ATPCO COM (Matthew Potter)
Date: Tue, 18 Jul 2000 13:35:56 -0400


Anyone notice when they insert their goodies CD(the one with the GNU Tools)
from Solaris 8 that it auto runs a script called volstart.

So what happens if I make my own CD with a little shell script which calls
a prebuilt binary with a setuid and setgid 0 , then system("/bin/sh")....
or what ever i want. THis is DEFAULT behavior. I am sure you would disable
it from running in vold.conf.

It's silly since i have physical access anyways....

matt


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]