[15322] in bugtraq
Re: BRU Vulnerability
daemon@ATHENA.MIT.EDU (terry white)
Wed Jun 14 15:26:52 2000
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Message-ID: <Pine.LNX.4.10.10006112337060.24420-100000@ellipsis.aniota.net>
Date: Sun, 11 Jun 2000 23:38:23 -0700
Reply-To: terry white <twhite@ANIOTA.COM>
From: terry white <twhite@ANIOTA.COM>
X-To: Theo Van Dinter <felicity@KLUGE.NET>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To: <20000611163130.A3960@kluge.net>
on "06/11/00" "Theo Van Dinter" writ:
: On Thu, Jun 08, 2000 at 02:05:26PM -0700, Jeremy Rauch wrote:
: > By default, BRU is installed setuid root. If it isn't, and is run by a
: > non-root user, it complains:
: > bru: [W171] warning - BRU must be owned by root and have suid bit set
:
: Clarification request: Which version of BRU? I got the RPM version of
: BRU 2000 (v15 I believe) w/ a RedHat box set I bought one day:
... really. i checked, and both of my installed BRU's failed to
indicate suid ...
--
... i'm a man , and i can change ,
if i really have to , i guess ...