Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Vulnerability Development: Re: Ports 0-1023?

Re: Ports 0-1023?

From: Blue Boar <BlueBoar_at_thievco.com>
Date: Mon, 08 Jul 2002 10:38:16 -0700

Robert Bihlmeyer wrote:
> What's the point in stripping root from sshd if it is able to run a
> shell as any user (including root)?

With the proposed change, sshd could only get root if someone with the
actual root password comes along and hands it to the sshd. With the
existing scheme, any remote vulnerabilities in the sshd code that happen
before it can drop privs will yield root without the password for the root
account.

Which is exactly what I was after.

                                                BB
Received on Jul 08 2002

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]