LinuxSA Mailing list archives

Index: [thread] [date] [subject] [author]
  From: Bruce Moffatt <bmoffatt@picknowl.com.au>
  To  : Phil Pittard <vk5ham@seol.net.au>, "linuxsa@linuxsa.org.au <vk5ham@seol.net.au>
  Date: Sat, 25 Sep 1999 11:59:10 +0930

Re: sendmail problem

Phil Pittard wrote:
> 
> Hi
> 
> There IS an exploitable hole in sendmail 8-7.3(ish) up to and including
> at least 8.8.3 or 8.8.4 (not sure how far the bug lasted!) which allows
> anyone to become root.... have a look in /tmp for an suid file called
> sh  and if its there you have had an unwanted visitor:).

Any cracker worth defending against is unlikely to leave their root
shell lying around in /tmp, and named sh. If you find such, assume you
have been burgled by a complete novice.

Bruce

-- 
Check out the LinuxSA web pages at http://www.linuxsa.org.au/
To unsubscribe from the LinuxSA list:
  mail linuxsa-request@linuxsa.org.au with "unsubscribe" as the subject


Index: [thread] [date] [subject] [author]
Return to the LinuxSA Mailing List Information Page