[18299] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Solaris patchadd(1) (3) symlink vulnerabilty

daemon@ATHENA.MIT.EDU (Paul Theodoropoulos)
Thu Dec 21 20:02:37 2000

Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"; format=flowed
Message-Id:  <5.0.2.1.2.20001221111106.00abdb60@pop.anastrophe.com>
Date:         Thu, 21 Dec 2000 11:12:48 -0800
Reply-To: Paul Theodoropoulos <paul@ANASTROPHE.COM>
From: Paul Theodoropoulos <paul@ANASTROPHE.COM>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  <20001221120931.A23523@fm.rz.fh-muenchen.de>

>I do indeed stand corrected: The only 2 sollutions are:
>1) change to single user mode by means of init S
>    and rm -rf /tmp/* /tmp/.*
>2) shutdown and boot -s into single user mode.


init 6 will work adequately; it's not necessary to power-down (init 5).
/tmp will be properly cleared on an init 6 (since it's normally in ram).


---------------------------------
Paul Theodoropoulos
paul@atgi.net paul@anastrophe.com
Senior Unix Systems Administrator
Advanced Telcom Group, Inc.
Santa Rosa, California
Work: http://www.callatg.com
Play: http://www.anastrophe.com
Downtime Is Not An Option

home help back first fref pref prev next nref lref last post