[32230] in bugtraq
Re: Mac OS X vulnerabilities
daemon@ATHENA.MIT.EDU (James Kelly)
Thu Oct 30 13:26:31 2003
Date: Wed, 29 Oct 2003 19:58:54 -0500
Mime-Version: 1.0 (Apple Message framework v552)
Content-Type: text/plain; charset=US-ASCII; format=flowed
From: James Kelly <macubergeek@comcast.net>
To: bugtraq@securityfocus.com
Content-Transfer-Encoding: 7bit
Message-Id: <3C1C830E-0A74-11D8-A7DC-000393790D08@comcast.net>
This vulnerability is much ado about nothing
It was caused by developers of shareware using third party installers
which changed the permissions on certain
directories of MacOS X.
Problem largely solved with the increased use of Apple's installer
AND
problem is easily fixed by adding this command to a root cron job.
diskutil repairpermissions /
Above command can be run every day for your paranoia protection ;-)
jamesk