[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: FW: [cobalt-security] Local Root exploit



> Turning off suid privileges on /usr/lib/authenticate means apache won't be
> able to authenticate users anymore.
> So, you won't be able to access admin console.

That's not correct. 

I have removed the SUID bit on /usr/lib/authenticate on all my RaQs and and 
still everything except Frontpage works. I don't use Frontpage, so I'm still 
a happy camper.

-- 

With best regards,

Michael Stauber
mstauber@xxxxxxxxxxxxxx
Unix/Linux Support Engineer