[3883] in bugtraq
Re: XDM bug
daemon@ATHENA.MIT.EDU (Mr. ManX)
Fri Jan 3 22:43:55 1997
Date: Fri, 3 Jan 1997 19:24:35 -0600
Reply-To: "Mr. ManX" <mrman@phoenix.net>
From: "Mr. ManX" <mrman@phoenix.net>
X-To: "Steve \"Stevers!\" Coile" <scoile@patriot.net>
To: Multiple recipients of list BUGTRAQ <BUGTRAQ@NETSPACE.ORG>
In-Reply-To: <Pine.LNX.3.91.970103113033.26298B-100000@adams.patriot.net>
/usr/X11/bin/xdm on my Slackware 96 system, /usr/bin/X11/xdm on my
Digital Unix system, and /usr/X11R6/bin/xdm on FreeBSD 2.1.5 are all not
subject to this problem. All systems have the program not set-UID.
Mr. Man X
http://www.cuervocon.org
http://www.mybutt.com
On Fri, 3 Jan 1997, Steve "Stevers!" Coile wrote:
> On Thu, 2 Jan 1997, Angel Ortiz wrote:
> [...]
> > System: UNIX Ware systems with X
> >
> > Symptom:
> > /usr/X/bin/xdm is setuid
> [...]
> > Any way, please verify xdm setuid on your systems and please let the
> > bugtraq news group know if it exists on other systems.
>
> Red Hat Linux 3.0.3 (w/unofficial shadow password support) is not subject
> to this problem (/usr/X11/bin/xdm is not set-UID).
>
> --
> Steve Coile P a t r i o t N e t Systems Engineering
> scoile@patriot.net Patriot Computer Group (703) 277-7737
>