Skip site navigation (1)Skip section navigation (2)
Date:      5 Oct 2000 13:25:08 GMT
From:      Alex Prohorenko <white@alkar.net>
To:        freebsd-security@freebsd.org
Subject:   Re: BSD chpass (fwd)
Message-ID:  <8rhvfk$12ue$2@pandora.alkar.net>
References:  <20001004053422.8A3901F19@static.unixfreak.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Dima Dorfman <dima@unixfreak.org> wrote:
>> For those not subscribed to bugtraq, it's time to remove the suid bit on
>> chpass.
> Unfortunatly it isn't that easy if you're running with securelevel > 0
> since chpass is installed with the schg (system immutable) flag on by
> default.  Oh well, guess it's time to reboot some hosts.  :-/

I do not see any single problem here.

chflags noschg /usr/bin/chpass
chown u-s /usr/bin/chpass 

Sounds pretty easy, isn't it?

-- 
Alexander Prohorenko,
Alkar Teleport



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?8rhvfk$12ue$2>