Bugtraq mailing list archives

Re: automountd and Solaris 2.3


From: jim () tadpole com (Jim Thompson)
Date: Thu, 5 May 94 11:06:04 CDT


I'd bet that it doesn't mount the floppy (or CD) nosuid, so the
cracker can simply make-up a floppy with a filesystem containing
a passwordless version of 'su'.

but I'm just guessing.

Jim



Current thread: