lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
From: gabriele at volanet.it (Gabriele Galadini)
Subject: some small bugs.

On Fri, 13 Aug 2004 06:26:28 -0700
kf_lists <kf_lists@...netops.com> wrote:

> are they setuid? give us an ls -al of each binary.
> 

 Of default install on OpenBSD these binary, are not
 set with setuid privileges, but this only wants to be 
 considered a simple bugs report, and not really security
 issue.
 In any case i signaled also one strange behavior of the 
 binary:
   
 mtv@...cuzio~$ HOME=`perl -e 'print "A" x 261626'`
 mtv@...cuzio~$ chpass
 chpass: vi: No such file or directory
 chpass: /etc/master.passwd: unchanged
 mtv@...cuzio~$
 
 and default install this have suid bit set.
 
 G.


Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ