[ Search ]
[ What's New? ]
[ About ]
|
|
| telnet(1) | |
|---|---|
| Systems Affected: | Sequent DYNIX/ptx 2.x |
| Problem: | There seem to be a security problem with the telnet command that will allow any user on the system to overwrite any file. For this to work telnet must be suid root. Using the command will overwrite any file in any filesystem with a zero-length root owned file. To exploit the bug try: /usr/bin/telnet -n filename hostname |
| Solution: | Remote the suid bit from telnet. |
|
Aleph One / aleph1@underground.org Copyright © 1996 Computer Underground Society. All rights reserved. |
|