Re: Possible exploit in 5.4-STABLE

[ Available lists | Index of freebsd-stable | Month of Jul 2005 | Week of 1 Jul 2005 | Raw email | View thread | Wrap long lines | Reply | Tag ]
From
Patrick Tracanelli <eksffa@freebsdbrasil.com.br>
Date
1 Jul 2005 14:50:55
Subject
Re: Possible exploit in 5.4-STABLE
Message-ID
42C55848.2060404@freebsdbrasil.com.br

In reply to
References to

[ Hide this part ]
[skip]
> to attach the binary, but I'll do it anyway because I don't have
> anything else but that and a readme file. It didn't seem to work (out of
> the box) with 5.4-RELEASE though.
>
> This is a translation from babelfish:
>
> Plain replacement of "standard" su for FreeBSD. It makes it possible to
> become any user (inc. root) with the introduction of any password. For
> this necessary to neglect su with the option "-!". with the use of this
> option does not conduct ravine- files. Was tested on FreeBSD 5.4-STABLE.
>
> My apologies if I am sending in something completely useless and not
> important, but I figured it wouldn't hurt just to make sure.
>
> Cheers,

The attached file needs to be setuid to root, so, someone needed to have
increased privileges before, in order to install this prg. In this case
a one-line C program w/ root setuid would do the same job.

--
Patrick Tracanelli
patrick @ freebsdbrasil.com.br
"Long live Hanin Elias, Kim Deal!"



Elapsed time: 0.260 seconds