set-uid/file permissions of xlock and sys-suspend

set-uid/file permissions of xlock and sys-suspend

Post by Kevin Mile » Wed, 16 Feb 2000 04:00:00



The following files have the following permissions

-rwsrwxr-x  1 root  bin  65908 Jul  8  1997 /usr/openwin/bin/xlock
-rwsrwxr-x  1 root  bin  39860 Jun 26  1997 /usr/openwin/bin/sys-suspend

Why is the group permissions set to write? I am assuming this can
be removed (as the date stamps haven't changed for years!).

Anyone have any comments on this?

--
Kevin Miles

 
 
 

set-uid/file permissions of xlock and sys-suspend

Post by Casper H.S. Dik - Network Security Engine » Wed, 16 Feb 2000 04:00:00


[[ PLEASE DON'T SEND ME EMAIL COPIES OF POSTINGS ]]


>The following files have the following permissions
>-rwsrwxr-x  1 root  bin  65908 Jul  8  1997 /usr/openwin/bin/xlock
>-rwsrwxr-x  1 root  bin  39860 Jun 26  1997 /usr/openwin/bin/sys-suspend
>Why is the group permissions set to write? I am assuming this can
>be removed (as the date stamps haven't changed for years!).

Yes, those can be removed.

Casper
--
Expressed in this posting are my opinions.  They are in no way related
to opinions held by my employer, Sun Microsystems.
Statements on Sun products included here are not gospel and may
be fiction rather than truth.

 
 
 

1. sys-suspend Permissions "WHAT WERE THEY THINKING!"

In Solaris 2.6, why on earth is sys-suspend world executable?  It is a
very cool concept, but in a world where it seems most Sun are Servers
of at least something would you make a world excuatable program that
can bring the server to an offline state?  

I consider this a bug that should be fixed!  Perhaps at the least there
should be a pre-defined group that can execute this command.

What are other peoples opinions?  Or is changing the permisions of this
program just another item on the checklist everytime you burn a machine?
--
Robin * Slomkowski
Long Live the Future              "Excuse me, could you help me? I am a spy."
lONG lIVE THE fUTURE                                             -The Doctor

2. PPP or Slip with modem pools?

3. Why does SYS-SUSPEND (solaris7) hang on my system ?

4. strange output of "who am I" & "last" on solaris 9

5. Solaris 2.6 and sys-suspend

6. Maths

7. Sys-suspend fails after applying patch 108725-08 (st drivers)

8. Internet Junkbuster Port?

9. sys-suspend with logging / fs

10. sys-suspend does not work on an UltraSparc 5

11. sol7 sys-suspend, intrusion ?

12. dir permissions and set uid /gid bits

13. console, Set uid permissions, and com2 disable