OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Bugtraq archives for 3rd quarter (Jul-Sep) 1998: Re: JetAdmin software

Re: JetAdmin software

James Clough (cloughBOI.HP.COM)
Wed, 22 Jul 1998 11:01:21 -0600

This security defect was brought to our attention and
fixed a year or so ago.  You can download the newest
version of JetAdmin for UNIX from www.hp.com.

James
--
cloughboi.hp.com


> a few days ago i was wondering around on a solaris machine,
> and noticed
> /tmp/jetadmin.log, root owned and mode 666, so naturally i
> symlinked it to
> /.rhosts, and returned the next day to find a mode 666 /.rhosts..
> the JetAdmin version seems to be (Rev. D.01.09), maybe i just have an
> older version of jetadmin, if anyone could verify and or
> check some other
> platforms for the problem, i would appreciate it.