[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-Disclosure] some small bugs.



On Fri, 13 Aug 2004 06:26:28 -0700
kf_lists <kf_lists@xxxxxxxxxxxxx> wrote:

> are they setuid? give us an ls -al of each binary.
> 

 Of default install on OpenBSD these binary, are not
 set with setuid privileges, but this only wants to be 
 considered a simple bugs report, and not really security
 issue.
 In any case i signaled also one strange behavior of the 
 binary:
   
 mtv@mercuzio~$ HOME=`perl -e 'print "A" x 261626'`
 mtv@mercuzio~$ chpass
 chpass: vi: No such file or directory
 chpass: /etc/master.passwd: unchanged
 mtv@mercuzio~$
 
 and default install this have suid bit set.
 
 G.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html