Re: dangerous to leave root logged in?
From: Julia Thorne (rimbaldi_at_nospam.tld)
Date: 03/31/05
- Next message: sraposo: "hooking disk accesses"
- Previous message: Keith Keller: "Re: I deleted my passwd and shadow file"
- In reply to: prg: "Re: dangerous to leave root logged in?"
- Next in thread: Unruh: "Re: dangerous to leave root logged in?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Thu, 31 Mar 2005 06:35:45 GMT
On 29 Mar 2005 21:11:39 -0800, prg wrote:
>> Wait... I wandered off the thread topic... Oh, yeah: what is the
>> danger of an open root shell login being exploited by another
>> user on the network?
>
> http://www.google.com/search?&as_qdr=m6&q=linux+bash+vulnerabilities+fedora&as_qdr=m6
>
> Results 1 - 50 of about 6,080 English pages over the past 6 months for
> linux bash vulnerabilities fedora.
>
> Just one distro. Enough said?
No, it's not enough- it isn't ANYTHING. Any idiot can type a few
words into a search engine & get a boatload of "results".
How many of those results have anything to do with the question?
There are MANY exploits available to people with shell access,
including many to escalate priveleges *FOR THAT USER*, but NONE of
those (in the search you quoted above) will let a user on a LAN
get into an open shell (root or not) on some *other* computer
on the lan.
Nobody can answer the posted question. Either they don't GET
the question, or they are just hiding behind a bull*** storm.
- Next message: sraposo: "hooking disk accesses"
- Previous message: Keith Keller: "Re: I deleted my passwd and shadow file"
- In reply to: prg: "Re: dangerous to leave root logged in?"
- Next in thread: Unruh: "Re: dangerous to leave root logged in?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]