[ Search ] [ What's New? ] [ About ]
[ Bugs ] [ Misc ] [ Mailing Lists ] [ Newgroups ] [ NewsWire ] [ Papers ] [ People ]
[ Pictures ] [ Publications ] [ Responce Teams ] [ Tools ] [ Upcoming Events ] [ Web Sites ]

login(1)
Systems Affected:AT&T's UNIX(r) System V Release 4
Problem: A security vulnerability exists in /bin/login in AT&T's System V Release 4 operating system. System users can gain unauthorized privileges.
Solution: A. AT&T Computer Systems customers

Log into the root account. Change the execution permission on the file /bin/login.

                chmod 500 /bin/login
Contact AT&T Computer Systems at 800-922-0354 to obtain a fix. The numbers associated with the fix are 156 (3.5" media) and 157 (5.25" media).

International customers should contact their local AT&T Computer Systems representative. B. All other System V Release 4 based systems

Log into the root account. Change the execution permission on the file /bin/login.

                chmod 500 /bin/login
Release 4 customers should contact their operating system supplier for details on the availability of the software update.

Aleph One / aleph1@underground.org
Copyright © 1996 Computer Underground Society. All rights reserved.