[507] in linux-security and linux-alert archive

home help back first fref pref prev next nref lref last post

Re: Avalon Release

daemon@ATHENA.MIT.EDU (Thierry Baron)
Fri Dec 8 13:40:14 1995

Date: Thu, 07 Dec 1995 11:52:06 -0500
From: Thierry Baron <baron@cim.mcgill.ca>
To: mcpheea@cadvision.com
CC: linux-alert@tarsier.cv.nrao.edu

[mod: redirected to linux-security and quoting trimmed --okir]

root wrote:
> Affected Program: splitvt(1)
> 
> Affected Operating Systems: Linux 2-3.X
> 
> Exploitation Result: Local users can obtain superuser privelages.
[...]

chmod u-s /usr/bin/splitvt
avoid this potential problem

-- 
Thierry
				| Thierry Baron
/_/_/_/_/_/_/_/   _/_/_/_/	| Center for Intelligent Machines
     _/ 	 _/     _/	| McConnell Engineering Building
    _/          _/_/_/_/_/	| 3480 University street
   _/	       _/       _/	| Montreal,Qc,H3A 2A7
  _/          _/       _/	| Canada
 _/	     _/_/_/_/_/		| 
				| Tel: 	(514) 398 8205
http://www.cim.mcgill.ca/~baron	| Fax: 	(514) 398 7348

home help back first fref pref prev next nref lref last post