[5478] in bugtraq
Major security-hole in kerberos rsh, rcp and rlogin.
daemon@ATHENA.MIT.EDU (Artur Grabowski)
Mon Nov 3 03:22:03 1997
X-Envelope-From: e96_agr@e.kth.se Mon Nov 3 12:19:27 1997
Date: Mon, 3 Nov 1997 02:18:49 +0100
Reply-To: Artur Grabowski <e96_agr@E.KTH.SE>
From: Artur Grabowski <e96_agr@E.KTH.SE>
X-To: best-of-security@cyber.com.au
To: BUGTRAQ@NETSPACE.ORG
There has been discovered a security-hole in kerberized rsh, rcp and rlogin.
Everyone who has setuid-bits set on these applications is adviced to disable
them.
The hole allows any user on the system to gain privilegies of any other user
including root.
The hole has been successfully tested on kth-kerberos, but is suspected to
exist on any other versions of kerberos.
//Artur Grabowski (administrator on stacken.kth.se)