[LWN Logo]

Date:	Wed, 29 Apr 1998 06:45:19 +1100
From:	Russell Coker - mailing lists account <bofh@COKER.COM.AU>
Subject:      Re: [Debian 2.0] /usr/bin/suidexec gives root access
To:	BUGTRAQ@NETSPACE.ORG

>Executive summary: /usr/bin/suidexec gives every user a
>root shell.  Remove it.

  Also change the suidexec line in /etc/suid.conf to the following so it never
gets the SUID bit again: suidmanager /usr/bin/suidexec root root 755
                                       ^^^^
The default is 4755.


---
Vote 1; Claudia Christian.
http://www.worldcharts.nl/xindex.html