RE: Root usage and applications

From: Barrie Dempster (barrie_at_reboot-robot.net)
Date: 11/17/05

  • Next message: Jonathan Loh: "Re: FW: Password creating Theories"
    To: "Kain, Becki (B.)" <bkain1@ford.com>
    Date: Thu, 17 Nov 2005 19:51:30 +0000
    
    
    

    On Thu, 2005-11-17 at 08:50 -0500, Kain, Becki (B.) wrote:
    > What, if any, exploits have been shown for the decendant of HPOV, IBM
    > Tivoli Netview, which also runs as root?
    >
    > Tia!
    >

    The particular exploit I highlighted affected NetView:
    http://www.cert.org/advisories/CA-2001-24.html

    <quote>
    Systems Affected
          * Systems running HP OpenView Network Node Manager (NNM) Version
            6.1 on the following platforms:
                  * HP9000 Servers running HP-UX releases 10.20 and 11.00
                    (only)
                  * Sun Microsystems Solaris releases 2.x
                  * Microsoft Windows NT4.x / Windows 2000
          * Systems running Tivoli NetView Versions 5.x and 6.x on the
            following platforms:
                  * IBM AIX
                  * Sun Microsystems Solaris
                  * Compaq Tru64 Unix
                  * Microsoft Windows NT4.x / Windows 2000
    </quote>

    -- 
    With Regards..
    Barrie Dempster (zeedo) - Fortiter et Strenue
    "He who hingeth aboot, geteth hee-haw" Victor - Still Game
    blog:  http://reboot-robot.net
    sites: http://www.bsrf.org.uk - http://www.security-forums.com
    ca:    https://www.cacert.org/index.php?id=3
    
    



  • Next message: Jonathan Loh: "Re: FW: Password creating Theories"