[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: FW: [cobalt-security] Local Root exploit
- Subject: Re: FW: [cobalt-security] Local Root exploit
- From: Michael Stauber <cobalt@xxxxxxxxxxxxxx>
- Date: Mon, 23 Sep 2002 12:33:44 +0200
- Organization: SOLARSPEED.NET
- List-id: Mailing list for users to address network security on Cobalt products. <cobalt-security.list.cobalt.com>
> Turning off suid privileges on /usr/lib/authenticate means apache won't be
> able to authenticate users anymore.
> So, you won't be able to access admin console.
That's not correct.
I have removed the SUID bit on /usr/lib/authenticate on all my RaQs and and
still everything except Frontpage works. I don't use Frontpage, so I'm still
a happy camper.
--
With best regards,
Michael Stauber
mstauber@xxxxxxxxxxxxxx
Unix/Linux Support Engineer