Java allows root access without permission?



Fedora 13 x86_64 with OpenJDK (not Sun) installed.

I was required to login to a web site today to configure a VPN and the
site installed a Cisco VPN Java applet. When it was finished installing
and was running I noticed the processes where running as root and had
installed into /opt. I had not given it my root password or any
permission to do so. It did not install any RPM package. It was all
driven by a Java applet.

$ ps -efw #id 502 is me
502 4791 2668 0 11:16 ? 00:00:19
/usr/lib/jvm/java-1.6.0-openjdk-1.6.0.0.x86_64/jre/lib/amd64/../../bin/java
sun.appl
root 4923 1 0 11:16 ? 00:00:00 /opt/cisco/vpn/bin/vpnagentd

Is this something "allowed" by some configuration setting in OpenJDK
somewhere? I'd like to turn off this "feature" ASAP.

Thanks,
Michael
--
users mailing list
users@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe or change subscription options:
https://admin.fedoraproject.org/mailman/listinfo/users
Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines



Relevant Pages

  • Re: Trend not updating on clients
    ... installing Officescan into the default web site breaks OWA ... because everything was new, SBS, ISA on SBS, and Trend CSM. ...
    (microsoft.public.windows.server.sbs)
  • RE: Installation - More user friendly
    ... Yes I have just put my web site online to sell my ... FreeBSD Stable 4.9 Release Install guide. ... of FreeBSD your installing. ...
    (freebsd-questions)
  • Re: How do I save data from a Word 2007 form with non-legacy contr
    ... installing your macro in Word, including adding the module in Normal. ... I haven't yet gotten to the point of trying the macro. ... Word MVP web site http://word.mvps.org ...
    (microsoft.public.word.docmanagement)
  • Re: Suggestions for solution - command shell web interface ??
    ... which produces absolutely ghastly colours on some combinations of computers Suns and PCs. ... The commercial version (which I think contravenes the GPL), ... Sun's web site for Windoze, but I don't think MS can distribute it any more. ... I have not tried it recently, but I think Putty can be run from their site, without installing. ...
    (uk.net.web.authoring)
  • Re: /exchange and /remote sites not accessible from outside
    ... I actually got it all working by rerunning the Internet and Email Setup wizard, ... Had to be done in slow stages so ISA was not ... port 1433 for SQL, for our web site, and realized I still needed to install ... Since installing ISA, and rerunning the Internet and Email Setup wizard, the ...
    (microsoft.public.windows.server.sbs)