[21365] in bugtraq
Re: Solaris whodo Vulnerability
daemon@ATHENA.MIT.EDU (Pablo Sor)
Fri Jul 6 01:07:37 2001
Message-ID: <3B44C514.1950EE54@afip.gov.ar>
Date: Thu, 05 Jul 2001 15:50:44 -0400
From: Pablo Sor <psor@afip.gov.ar>
MIME-Version: 1.0
To: Mike Gerdts <gerdts@bellsouth.net>
Cc: bugtraq@securityfocus.com
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
Mike Gerdts wrote:
>
> On Thu, Jul 05, 2001 at 10:55:55AM -0400, Pablo Sor wrote:
> >
> > Clear the suid bit of
> >
> > /usr/sbin/sparcv7/whodo (SunOS 5.8 Sparc)
> > /usr/sbin/i86/whodo (SunOS 5.8, 5.7 Intel)
> > /usr/sbin/whodo (SunOS 5.5.1)
> >
>
> A likely addition to this list is /usr/sbin/sparcv9/whodo. This is the
> 64-bit version which is not installed by default on 32-bit systems.
>
> Mike
The /usr/sbin/sparcv9/whodo seems to be not vulnerable.
--
Pablo Sor
psor@afip.gov.ar, psor@ccc.uba.ar