Bugtraq mailing list archives
Re: IRIX 5.2 Security Advisory - Mystery Solved
From: mjh25920 () ggr co uk (Martin Hargreaves)
Date: Thu, 11 Aug 1994 10:40:59 +0000 (GMT)
On Thu, 11 Aug 1994, Ian Hoyle wrote:
At 1:02 AM 11/8/94, Martin Hargreaves wrote:/usr/sbin/PrintStatus runs suid root, and calls sgihelp. F1 isn't needed you can just hit the help button.Hmmm, I thought it was suid lp. ian
Yes you're right, my mistake. Sorry. However:
% uname -a
IRIX uk6xxxxx 5.2 02282015 IP19 mips
% ls -l /usr/sbin/printers
-rwsr-xr-x 1 root sys 181768 Mar 10 20:08 /usr/sbin/printers
So I was almost right, this program also calls sgihelp (which is
renamed on our systems)
On this thread does anyone know why gr_osview in IRIX 4.x and 5.x is
suid root, when osview (the non-graphical version) is sgid sys?
Martin.
Martin Hargreaves | mjh25920 () ggr co uk
Computational Chemist | ch11mh () surrey ac uk
Glaxo R & D | No problem is so large that
& Surrey University | we can't fit it in somewhere
Current thread:
- Re: IRIX 5.2 Security Advisory - Mystery Solved Jim Littlefield (Aug 10)
- Re: IRIX 5.2 Security Advisory - Mystery Solved Martin Hargreaves (Aug 10)
- IRIX 5.2 security problem Phil Cox (Aug 10)
- Re: IRIX 5.2 security problem Jim Littlefield (Aug 11)
- Firewall tools for VMS? Andrew T. Rodnite (Aug 11)
- Archive?/sendmail holes?/rdist hole? Andrew T. Rodnite (Aug 11)
- Solaris 2.3 login Jas (Aug 10)
- <Possible follow-ups>
- Re: IRIX 5.2 Security Advisory - Mystery Solved Martin Hargreaves (Aug 11)
