[15322] in bugtraq

home help back first fref pref prev next nref lref last post

Re: BRU Vulnerability

daemon@ATHENA.MIT.EDU (terry white)
Wed Jun 14 15:26:52 2000

MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Message-ID:  <Pine.LNX.4.10.10006112337060.24420-100000@ellipsis.aniota.net>
Date:         Sun, 11 Jun 2000 23:38:23 -0700
Reply-To: terry white <twhite@ANIOTA.COM>
From: terry white <twhite@ANIOTA.COM>
X-To:         Theo Van Dinter <felicity@KLUGE.NET>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  <20000611163130.A3960@kluge.net>

on "06/11/00" "Theo Van Dinter" writ:

: On Thu, Jun 08, 2000 at 02:05:26PM -0700, Jeremy Rauch wrote:
: > By default, BRU is installed setuid root.  If it isn't, and is run by a
: > non-root user, it complains:
: > bru: [W171] warning - BRU must be owned by root and have suid bit set
:
: Clarification request:  Which version of BRU?  I got the RPM version of
: BRU 2000 (v15 I believe) w/ a RedHat box set I bought one day:

   ... really.  i checked, and both of my installed BRU's failed to
indicate suid ...

--
... i'm a man , and i can change ,
    if i really have to , i guess ...

home help back first fref pref prev next nref lref last post