[SECURITY] Simpleinit root exploit

Gerard Beekmans gerard at linuxfromscratch.org
Sun May 26 13:49:57 PDT 2002


On Sun, May 26, 2002 at 10:24:34PM +0200, Matthias Benkmann wrote:
> No, maybe this was badly phrased but I meant the term "program" to include
> boot scripts. Whatever code is executed as bootprog or by code run as
> bootprog is vulnerable, regardless of whether it's an ELF binary, a Perl
> script, a shell script or whatever. So the workaround is to be read as
> "Do not start *anything* that interacts with untrusted users directly or
> indirectly as bootprog/finalprog/ctrlaltdel". 

So far for convenience of booting into graphical userinterface at boottime.
Oh well :)

-- 
Gerard Beekmans
www.linuxfromscratch.org

-*- If Linux doesn't have the solution, you have the wrong problem -*-
-- 
Unsubscribe: send email to listar at linuxfromscratch.org
and put 'unsubscribe lfs-security' in the subject header of the message



More information about the lfs-security mailing list