Re: automountd and Solaris 2.3

Daniel R Ehrlich (ehrlich@cse.psu.edu)
Thu, 5 May 1994 16:05:21 -0400

>
>Sun just released a Security Bulletin announcing a patch for the
>automountd on Solaris 2.3 systems.
>
>The hole allows a non-root user to gain root, so the Bulletin
>says, implying that this isn't exploitable from a remote machine
>-- but there are no details, of course.  
>
>Anyone have more of an idea as to how much of a threat this
>actually is?
>
>Richard
>

This bulletin is in error.  Sun is in the process of issuing a corrected
version.  Stay tuned.  Film at 11.

-- Dan Ehrlich