Re: Solaris whodo Vulnerability

From: Pablo Sor (psorat_private)
Date: Thu Jul 05 2001 - 12:50:44 PDT

  • Next message: Mike Gerdts: "Re: Solaris whodo Vulnerability"

    Mike Gerdts wrote:
    > 
    > On Thu, Jul 05, 2001 at 10:55:55AM -0400, Pablo Sor wrote:
    > >
    > > Clear the suid bit of
    > >
    > > /usr/sbin/sparcv7/whodo (SunOS 5.8 Sparc)
    > > /usr/sbin/i86/whodo     (SunOS 5.8, 5.7 Intel)
    > > /usr/sbin/whodo         (SunOS 5.5.1)
    > >
    > 
    > A likely addition to this list is /usr/sbin/sparcv9/whodo.  This is the
    > 64-bit version which is not installed by default on 32-bit systems.
    > 
    > Mike
    
    The /usr/sbin/sparcv9/whodo seems to be not vulnerable.
    
    -- 
    Pablo Sor
    psorat_private, psorat_private
    



    This archive was generated by hypermail 2b30 : Thu Jul 05 2001 - 22:08:23 PDT