userOsa can overwrite passwd and shadow
What is this stuff?
If this isn't exactly what you wanted, please try our Search (there's a LOT of techy and non-techy stuff here about Linux, Unix, Mac OS X and just computers in general!):
Newsgroups: comp.unix.sco.misc Subject: Re: BUGTRAQ report References: <email@example.com> From: firstname.lastname@example.org (John Temples) Message-ID: <zOLM3.401$uI3.email@example.com> X-Abuse-Info: Please be sure to forward a copy of ALL headers X-Abuse-Info: Otherwise we will be unable to process your complaint properly Distribution: world Date: Tue, 12 Oct 1999 19:16:47 GMT In article <firstname.lastname@example.org>, Danny Aldham <email@example.com> wrote: >Any user may overwrite any file with group auth (i.e. /etc/shadow, >/etc/passwd) using /etc/sysadm.d/bin/userOsa. My quick fix for this is to edit userOsa and replace the string "debug.log" with "/dev/null". -- John W. Temples, III
Got something to add? Send me email.
(OLDER) <- More Stuff -> (NEWER) (NEWEST)
Printer Friendly Version
Increase ad revenue 50-250% with Ezoic