[15995] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Group-writable executable in OpenLDAP

daemon@ATHENA.MIT.EDU (Patrick P. Murphy)
Fri Jul 28 13:48:49 2000

Message-Id:  <200007271835.OAA05462@orangutan.cv.nrao.edu>
Date:         Thu, 27 Jul 2000 14:35:16 -0400
Reply-To: "Patrick P. Murphy" <pmurphy@NRAO.EDU>
From: "Patrick P. Murphy" <pmurphy@NRAO.EDU>
To: BUGTRAQ@SECURITYFOCUS.COM

On Wed, 26 Jul 2000 13:33:23 +0200, Christian Kleinewaechter
   <kleinew@MATHEMATIK.UNI-BIELEFELD.DE> said:

> OpenLDAP installs the ud binary in $binpath with mode 775 and default
> group

On Red Hat 6.2 as shipped, it's apparently not the case:

  : orangutan_pmurphy; ll /usr/bin/ud
  -rwxr-xr-x    1 root     root       111152 Apr 13 11:21 /usr/bin/ud*

Granted this is with an older version (openldap-1.2.9-6).

				- Pat
--
  Patrick P. Murphy, Ph.D.            Division Head, Charlottesville Computing
  (804) 296-0372, 296-0236                National Radio Astronomy Observatory
  Home: http://www.chien-noir.com/      Work: http://www.cv.nrao.edu/~pmurphy/
   "Linux is Inevitable."  "Why?"  "Because it's alive!" - John MadDog Hall

home help back first fref pref prev next nref lref last post