Bugtraq mailing list archives

Re: IRIX 5.2 Security Advisory - Mystery Solved


From: mjh25920 () ggr co uk (Martin Hargreaves)
Date: Thu, 11 Aug 1994 10:40:59 +0000 (GMT)


On Thu, 11 Aug 1994, Ian Hoyle wrote:

At 1:02 AM 11/8/94, Martin Hargreaves wrote:

       /usr/sbin/PrintStatus runs suid root, and calls sgihelp. F1 isn't
needed you can just hit the help button.

Hmmm, I thought it was suid lp.

  ian

        Yes you're right, my mistake. Sorry. However:

% uname -a 
IRIX uk6xxxxx 5.2 02282015 IP19 mips
% ls -l /usr/sbin/printers
-rwsr-xr-x    1 root     sys       181768 Mar 10 20:08 /usr/sbin/printers

        So I was almost right, this program also calls sgihelp (which is 
renamed on our systems)

 On this thread does anyone know why gr_osview in IRIX 4.x and 5.x is
 suid root, when osview (the non-graphical version) is sgid sys?

        Martin.
        

 Martin Hargreaves       |  mjh25920 () ggr co uk 
 Computational Chemist   |  ch11mh () surrey ac uk
 Glaxo  R & D            |  No problem is so large that 
 & Surrey University     |  we can't fit it in somewhere



Current thread: