[3063] in bugtraq

home help back first fref pref prev next nref lref last post

problems in /usr/Cadmin/bin for IRIX 5.3: EXPLOIT

daemon@ATHENA.MIT.EDU (Grant Kaufmann)
Tue Aug 6 12:21:07 1996

Date: 	Tue, 6 Aug 1996 14:45:10 +0200
Reply-To: Bugtraq List <BUGTRAQ@netspace.org>
From: Grant Kaufmann <gkaufman@cs.uct.ac.za>
To: Multiple recipients of list BUGTRAQ <BUGTRAQ@netspace.org>

As promised, the exploit for chost under IRIX 5.3. If someone
can verify any other versions of IRIX; 4.0.5F is not vulnerable.

--------
/usr/Cadmin/bin/chost
tools-primary user information
change information
OK (to root password, ie leave blank)
OK (to "password invalid")
Cancel
Double-click any share resource to bring up desktopManager running
as root. Try editing /etc/passwd
--------

--
Grant
--
http://www.cs.uct.ac.za/~gkaufman/pgp.html

home help back first fref pref prev next nref lref last post