[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-Disclosure] some small bugs.
- To: full-disclosure@xxxxxxxxxxxxxxxx
- Subject: Re: [Full-Disclosure] some small bugs.
- From: Gabriele Galadini <gabriele@xxxxxxxxxx>
- Date: Sun, 15 Aug 2004 11:52:20 +0200
On Fri, 13 Aug 2004 06:26:28 -0700
kf_lists <kf_lists@xxxxxxxxxxxxx> wrote:
> are they setuid? give us an ls -al of each binary.
>
Of default install on OpenBSD these binary, are not
set with setuid privileges, but this only wants to be
considered a simple bugs report, and not really security
issue.
In any case i signaled also one strange behavior of the
binary:
mtv@mercuzio~$ HOME=`perl -e 'print "A" x 261626'`
mtv@mercuzio~$ chpass
chpass: vi: No such file or directory
chpass: /etc/master.passwd: unchanged
mtv@mercuzio~$
and default install this have suid bit set.
G.
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html