Re: sfxload issues.

From: OOZIE (oozieat_private)
Date: Thu Jan 03 2002 - 17:47:36 PST

  • Next message: ByteRage: "Re: Clicktilluwin DLDER Trojan"

    H3LL0 ! 
    
    On Wed, 02 Jan 2002, l0rt wrote:
    > Vendor : http://members.tripod.de/iwai/awedrv.html
    > Program: sfxload
    > OS     : RH 7.1 
    > Version: 0.4.3
    > SUID   : No
    > SGID   : No
    > Issue  : This may get called by an suid helper binary which would allow 
    > 	 a normal user to gain some more privs.
    [...]
    
    Oops... Red Hat 7.2 seems also to be vulnerable ;)
    Well, I dunno if anyone will need this code, but maybe ... (?)
    
    Best regards,
    OOZIE
    
    



    This archive was generated by hypermail 2b30 : Thu Jan 03 2002 - 09:49:02 PST