Bugtraq mailing list archives
problems in /usr/Cadmin/bin for IRIX 5.3
From: gkaufman () cs uct ac za (Grant Kaufmann)
Date: Mon, 5 Aug 1996 16:58:20 +0200
I've stumbled onto a problem with /usr/Cadmin/bin/chost and /usr/Cadmin/bin/cimport. I'll post an exploit tomorrow, but I'd like to know why so many (17) programs in this directory are suid? They should only be run by root anyway. A quick fix is chmod -s /usr/Cadmin/bin/* . -- Grant -- http://www.cs.uct.ac.za/~gkaufman/pgp.htm
Current thread:
- Exploiting Zolaris 2.4 ?? :) Aleph One (Aug 03)
- Re: Exploiting Zolaris 2.4 ?? :) Casper Dik (Aug 04)
- Re: Exploiting Zolaris 2.4 ?? :) David DeSimone (Aug 04)
- Re: Exploiting Zolaris 2.4 ?? :) Grant Kaufmann (Aug 05)
- Re: Exploiting Zolaris 2.4 ?? :) Casper Dik (Aug 06)
- problems in /usr/Cadmin/bin for IRIX 5.3 Grant Kaufmann (Aug 05)
- CERT Advisory CA-96.16 - Vulnerability in Solaris admintool CERT Advisory (Aug 05)
- Re: group-setuid core hole Justin Mason (Aug 06)
- problems in /usr/Cadmin/bin for IRIX 5.3: EXPLOIT Grant Kaufmann (Aug 06)
- CERT Advisory CA-96.17 - Vulnerability in Solaris vold CERT Advisory (Aug 06)
- Re: Exploiting Zolaris 2.4 ?? :) Casper Dik (Aug 04)
