Re: [suse-sles-e] Security note: Multiple vulnerabilities in Suse ksh(93)

From: Felix Schulte (felix.schulte_at_gmail.com)
Date: Tue Apr 10 2007 - 17:37:57 CEST


Message-ID: <74f15d5f0704100837g56d25be5gdf045e66d61922a9@mail.gmail.com>
Date: Tue, 10 Apr 2007 17:37:57 +0200
From: "Felix Schulte" <felix.schulte@gmail.com>
Subject: Re: [suse-sles-e] Security note: Multiple vulnerabilities in Suse ksh(93)

On 4/9/07, Alexei_Roudnev <Alexei_Roudnev@exigengroup.com> wrote:
> These all are very low impact problems, because no one allows ksh access to
> the users without FreSBD jail or Solaris partitioning or SuSe XEN.
I disagree. This is a high-priority problem which can be used to
compromise a system via enhancing the current users privileges. That's
very bad.

-- 
      _        Felix Schulte
    _|_|_     mailto:felix.schulte@gmail.com
    (0 0)
ooO--(_)--Ooo
---------------------------------------------------------------------
To unsubscribe, e-mail: suse-sles-e-unsubscribe@suse.com
For additional commands, e-mail: suse-sles-e-help@suse.com


This archive was generated by hypermail 2.1.7 : Tue Apr 10 2007 - 19:41:48 CEST