TurboLinux 1.2 xinit hole - Fix #2

From: Scott Stone (sstoneat_private)
Date: Tue May 05 1998 - 18:05:09 PDT

  • Next message: David LeBlanc: "Anonymous Connections May Be Able to Obtain the Password Policy"

    OK, turns out that the etcskel and the xinitrc packages are both affected.
    Get the latest versions from ftp.turbolinux.com:/pub/tl_updates and the
    hole is fixed.
    
    NOTE - you will also have to either comment out the xhost + line from all
    the users' .xinitrc files in their home dirs OR copy the one from
    /etc/skel over the users' .xinitrc files.
    
    --------------------------------------------------
    Scott M. Stone <sstoneat_private, sstoneat_private>
                   <sstoneat_private>
    Linux Developer/Systems Administrator for Pacific HiTech, Inc.
    http://www.pht.com              http://armadillo.pht.co.jp
    http://www.pht.co.jp            http://www.turbolinux.com
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 13:52:25 PDT