[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: ***HUGE*** security hole??!! (Re: Lost root passwd)



Michael Beattie <mickyb@es.co.nz> writes:

> other=/dev/hda1
>      label=Win
>      loader=/boot/chain.b
>      table=/dev/hda
> [end]

This means a malicious person will be able to download the ext2 driver
in Win95 (if it is running) and the person will be able to read
shadow. 


-- 
Jens.Ritter@weh.rwth-aachen.de       grimaldi@debian.org
KeyID: 2048/E451C639 1998/01/28
Print: 5F 3D 43 1E 24 1E CC 48  1E 05 93 3A A7 10 73 37
Here is a patch for one of the nastiest 2.1 (and earlier)
problems: the uptime counter wraps back to zero after 497 days. The
heartbreak of seeing that carefully-nurtured uptime go to zero is not
something that should be inflicted on anybody.
                -- http://lwn.net/  August 27, 1998


Reply to: