Re: FreeBSD 4.3 local root
From: serkoon (serkoon@thedarkside.nl)
Date: 07/12/01
- Next message: Przemyslaw Frasunek: "Re: FreeBSD 4.3 local root"
- Previous message: Jason DiCioccio: "RE: FreeBSD 4.3 local root"
- In reply to: Jason DiCioccio: "RE: FreeBSD 4.3 local root"
- Next in thread: Ryan: "FreeBSD 4.3 local root PREVENTIONS"
- Reply: Ryan: "FreeBSD 4.3 local root PREVENTIONS"
- Reply: alexus: "Re: FreeBSD 4.3 local root"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: "serkoon" <serkoon@thedarkside.nl> To: <security@freebsd.org> Date: Thu, 12 Jul 2001 19:40:28 +0200
Somebody said something somewhere:
> is the binary named 'vv' ?
>
> It has to be.
The binary doesn't need to be named 'vv', that's bull.
However.. there are several reports (myself included)
of people not being able to succesfully run the exploit
because of the used shell. Normally I use bash (2.05.?),
but somebody told me he could succesfully exploit
the bug using Midnight Commander, so I tried that.
It worked for me. So I did a bit thinking and executed
/bin/sh. That was what was needed to run the exploit
successfully. No need to change the exploitcode
or build it as 'vv', just use /bin/sh as shell.
Regards..
To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message
- Next message: Przemyslaw Frasunek: "Re: FreeBSD 4.3 local root"
- Previous message: Jason DiCioccio: "RE: FreeBSD 4.3 local root"
- In reply to: Jason DiCioccio: "RE: FreeBSD 4.3 local root"
- Next in thread: Ryan: "FreeBSD 4.3 local root PREVENTIONS"
- Reply: Ryan: "FreeBSD 4.3 local root PREVENTIONS"
- Reply: alexus: "Re: FreeBSD 4.3 local root"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|