[16528] in bugtraq
aix allows clearing the interface stats
daemon@ATHENA.MIT.EDU (alex medvedev)
Sun Sep 3 23:53:12 2000
Mime-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Message-Id: <Pine.LNX.4.21.0009030003260.10330-100000@quake.pycckue.org>
Date: Sun, 3 Sep 2000 00:28:07 -0500
Reply-To: alex medvedev <alexm@PYCCKUE.ORG>
From: alex medvedev <alexm@PYCCKUE.ORG>
To: BUGTRAQ@SECURITYFOCUS.COM
hallo,
aix versions 4.x.x will let a non-priveledged user clear the
network interface statistics, thus annoying system administrators and
interfering with the system scripts that depend on those numbers >:-]
$ netstat -in --> shows stats
$ netstat -Zi --> clears them without checking the uid
ibm was informed about a month ago and the problem was taken care of.
bye,
-alexm the bandwidthwaister