home *** CD-ROM | disk | FTP | other *** search
- Path: sparky!uunet!olivea!spool.mu.edu!uwm.edu!caen!saimiri.primate.wisc.edu!ames!agate!doc.ic.ac.uk!uknet!keele!nott-cs!lut.ac.uk!
- From: jon@hill.lut.ac.uk (Jon P. Knight)
- Newsgroups: comp.security.misc
- Subject: Re: Setuid file
- Message-ID: <1992Nov5.090120.14723@lut.ac.uk>
- Date: 5 Nov 92 09:01:20 GMT
- References: <chupchup.720790116@piggy> <1d9ggiINNsfb@sequoia.ccsd.uts.EDU.AU>
- Organization: Dept of Comp. Studies, Loughborough University of Tech., UK.
- Lines: 25
- Nntp-Posting-Host: hill.lut.ac.uk
-
- In article <1d9ggiINNsfb@sequoia.ccsd.uts.EDU.AU> mgream@acacia (Matthew Gream) writes:
- >Robert Earl (chupchup@ferkel.ucsb.edu) wrote:
- >:
- >: | Found this on one of our systems. Anyone know if there is any way
- >: | this could be used to obtain root access?
- >: | -rwsr-xr-x 1 root 0 Apr 7 1992 file
- >:
- >No one yet asked what OS this was, HP-UX doesnt clear the setuid-bit on
- >an append (at least It didnt in one of its installed versions ive seen),
- >so appending a shell script to make a setuid shell is a trivial job.
- >
-
- But you'd need to be root to write to this file anyway...
-
- Still, if you don't know what it is, back it up and then delete it.
- Better safe than sorry.
-
- Jon
-
-
- --
- -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
- Jon Knight, Research Student in High Performance Networking and Distributed
- Systems in the Department of _Computer_Studies_ at Loughborough University.
- ** I can't even talk to you without the aid of chemicals or lies. - Pele **
-