[SLE] Potential security problem in SuSE-9.1

From: Mark Gray (markgray-temp-1083765299_at_iago.nac.net)
Date: 05/31/04

  • Next message: St. Maurice School: "[SLE] Terminal Server Anyone?"
    To: suse-linux-e@suse.com
    Date: 31 May 2004 14:14:42 -0400
    
    

    Is there a good email address to send information about a bug which
    might represent a security problem for someone using SuSE-9.1?

    It is a slight problem, but would allow a Trojan with write access to
    a certain user owned directory to have a program executed as root.
    Even without that being a problem, an unluckily named program in that
    directory WILL be executed as root which could have surprising
    results for the program which runs it.

    -- 
    Check the headers for your unsubscription address
    For additional commands send e-mail to suse-linux-e-help@suse.com
    Also check the archives at http://lists.suse.com
    Please read the FAQs: suse-linux-e-faq@suse.com
    

  • Next message: St. Maurice School: "[SLE] Terminal Server Anyone?"

    Relevant Pages