Full Disclosure mailing list archives

Re: SSH Exploit Request


From: Paul Schmehl <pauls () utdallas edu>
Date: Fri, 14 Nov 2003 20:36:59 -0600

--On Friday, November 14, 2003 21:10:04 -0500 Valdis.Kletnieks () vt edu wrote:

I'm sure I'm not the only sysadmin who's SSH'ed in to an ill box, decided
a reboot was needed, and typed 'shutdown -i6 -g0 -y' (runlevel 6 to
reboot, zero seconds grace, and don't prompt me), and instead realized 7
seconds later that what the other end *received* was '-i0 -g6 -y'
(poweroff with 6 seconds warning), and made a bad situation worse.

Just curious....why wouldn't you use 'shutdown -r now'?

Paul Schmehl (pauls () utdallas edu)
Adjunct Information Security Officer
The University of Texas at Dallas
AVIEN Founding Member
http://www.utdallas.edu

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: