Date: Fri, 17 Mar 1995 11:33:28 +0000 (GMT) From: Paul Richards <paul@isl.cf.ac.uk> To: rgrimes@gndrsh.aac.dev.com (Rodney W. Grimes) Cc: wpaul@freefall.cdrom.com, freebsd-bugs@freefall.cdrom.com Subject: Re: Changed information for PR misc/245 Message-ID: <199503171133.LAA03313@isl.cf.ac.uk> In-Reply-To: <199503170517.VAA17638@gndrsh.aac.dev.com> from "Rodney W. Grimes" at Mar 16, 95 09:17:23 pm
next in thread | previous in thread | raw e-mail | index | archive | help
In reply to Rodney W. Grimes who said > > > > > Synopsis: all users imported from YP have UID 0 > > > > State-Changed-From-To: open-closed > > State-Changed-By: wpaul > > State-Changed-When: Thu Mar 16 20:06:37 PST 1995 > > State-Changed-Why: > > There is no bug: the reason this is happening is that you have not > > configured things correctly. To turn on client access to the passwd map, > > you have to use vipw to add a line to /etc/master.passwd that says > > '+::::::::: (that's a plus sign and nine colons). Using just a > > plus sign doesn't work. > > Perhaps the code that reads /etc/master.passwd file and recognizes the > bogos "+" only line and does all this strange stuff should be fixed to > emit a syslog error!!! > > Otherwise we are going to see this bug report again! I'm more concerned about the fact the bug isn't actually fixed. The original report looked pretty scary and if compromising root is possible from a simple configuration error then we have a serious bug. -- Paul Richards, FreeBSD core team member. Phone: +44 1222 874000 x6646 (work), +44 1222 457651 (home) Dept. Mechanical Engineering, University of Wales, College Cardiff. Internet: paul@FreeBSD.org, URL: http://isl.cf.ac.uk/~paul/
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199503171133.LAA03313>