[3883] in bugtraq

home help back first fref pref prev next nref lref last post

Re: XDM bug

daemon@ATHENA.MIT.EDU (Mr. ManX)
Fri Jan 3 22:43:55 1997

Date: 	Fri, 3 Jan 1997 19:24:35 -0600
Reply-To: "Mr. ManX" <mrman@phoenix.net>
From: "Mr. ManX" <mrman@phoenix.net>
X-To:         "Steve \"Stevers!\" Coile" <scoile@patriot.net>
To: Multiple recipients of list BUGTRAQ <BUGTRAQ@NETSPACE.ORG>
In-Reply-To:  <Pine.LNX.3.91.970103113033.26298B-100000@adams.patriot.net>

/usr/X11/bin/xdm on my Slackware 96 system, /usr/bin/X11/xdm on my
Digital Unix system, and /usr/X11R6/bin/xdm on FreeBSD 2.1.5 are all not
subject to this problem.  All systems have the program not set-UID.

Mr. Man X
http://www.cuervocon.org
http://www.mybutt.com

On Fri, 3 Jan 1997, Steve "Stevers!" Coile wrote:

> On Thu, 2 Jan 1997, Angel Ortiz wrote:
> [...]
> > System: UNIX Ware systems with X
> >
> > Symptom:
> > /usr/X/bin/xdm is setuid
> [...]
> > Any way, please verify xdm setuid on your systems and please let the
> > bugtraq news group know if it exists on other systems.
>
> Red Hat Linux 3.0.3 (w/unofficial shadow password support) is not subject
> to this problem (/usr/X11/bin/xdm is not set-UID).
>
> --
>     Steve Coile           P a t r i o t  N e t      Systems Engineering
>  scoile@patriot.net      Patriot Computer Group        (703) 277-7737
>

home help back first fref pref prev next nref lref last post