[8682] in bugtraq
Re: RSI.0012.12-03-98.SOLARIS.MKCOOKIE
daemon@ATHENA.MIT.EDU (Readwin, Neil)
Mon Dec 7 16:45:00 1998
Date: Mon, 7 Dec 1998 13:39:05 -0500
Reply-To: Bugtraq List <BUGTRAQ@NETSPACE.ORG>
From: "Readwin, Neil" <nr63580@IMCNAM.SBI.COM>
X-To: Pavel Kankovsky <peak@KERBEROS.TROJA.MFF.CUNI.CZ>
To: BUGTRAQ@NETSPACE.ORG
> A stupid question: why does mkcookie need the s-bit?
On Solaris mkcookie opens /dev/mem and reads about 8MB of it. mkcookie will
run and generate a new cookie if you remove the suid bit, but I guess said
cookie will be, umm, less random.