Full Disclosure mailing list archives
Re: Solaris 9/10 ld.so fun
From: Piotr KUCHARSKI <chopin () sgh waw pl>
Date: Tue, 28 Jun 2005 19:48:59 +0200
On Tue, Jun 28, 2005 at 06:17:02PM +0200, Przemyslaw Frasunek wrote:
This vulnerability was introduced by one of the recent patches for Solaris 9, possibly 112963. Ld.so patched with 112963-08 is not vulnerable -- it does not allow LD_AUDIT for set[ug]id binaries, but upgrading to 112963-16 definitly makes ld.so exploitable.
Just patchrm-ed 112963-19 to -12, it is not working anymore. p. -- Beware of he who would deny you access to information, for in his heart he dreams himself your master. -- Commissioner Pravin Lal http://nerdquiz.sgh.waw.pl/ -- polska wersja quizu dla nerdów ;) _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- Solaris 9/10 ld.so fun Przemyslaw Frasunek (Jun 27)
- Re: Solaris 9/10 ld.so fun Przemyslaw Frasunek (Jun 27)
- Re: Solaris 9/10 ld.so fun Przemyslaw Frasunek (Jun 28)
- Re: Solaris 9/10 ld.so fun Piotr KUCHARSKI (Jun 28)
- RE: Solaris 9/10 ld.so fun Charles Heselton (Jun 28)
- Re: Solaris 9/10 ld.so fun Casper . Dik (Jun 29)
- Re: Solaris 9/10 ld.so fun Piotr KUCHARSKI (Jun 28)
- Re: Solaris 9/10 ld.so fun Przemyslaw Frasunek (Jun 29)