security problem

From: Kenneth C . Arnold (kcarnold@yahoo.com)
Date: Sun May 21 2000 - 19:54:56 EST


('x-unknown' encoding is not supported, stored as-is) On Sun, 21 May 2000 20:36:40 Tonglu Yi wrote:
> i find that in redhat non-root user can run shutdown program and halt
> linux system. is it a kernel related problem ?

Type ls -l `which shutdown`

If by any chance it looks like:
rwsr-xr-x root root etc... (we only care about the first three
characters)

then it is running SUID root, i.e., with root privilages.

That would explain it.

Kenneth

__________________________________________________
Do You Yahoo!?
Talk to your friends online with Yahoo! Messenger.
http://im.yahoo.com

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Tue May 23 2000 - 21:00:20 EST