OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Scott Dier (diemanringworld.org)
Date: Tue Oct 16 2001 - 11:03:05 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    * Niels Heinen <zilli0ngmx.net> [011016 10:55]:
    > Affected version: v1.37 prior versions might also be affected.
    > Tested platforms: FreeBSD, NetBSD, OpenBSD and Linux.

    Debian unstable's snes9x 1.39-1 packages do not have setuid set by
    default. I dont have any resources to check stable.

    The version distributed with the Progeny package set is 1.29-2. These
    are also not set as setuid root.

    Please, next time state the exact distribution you are testing against,
    'Linux' isn't descriptive enough.

    ----
    Debian unstable, 1.39-1:
    -rwxr-xr-x    1 root     root       868360 Oct  9 18:53 /usr/bin/gsnes9x
    -rwxr-xr-x    1 root     root       896520 Oct  9 18:53 /usr/bin/osnes9x
    -rwxr-xr-x    1 root     root       847368 Oct  9 18:53 /usr/bin/ssnes9x
    -rwxr-xr-x    1 root     root       884264 Oct  9 18:53 /usr/bin/snes9x
    

    Progeny, 1.29-2: -rwxr-xr-x 1 root root 1072024 Jul 18 2000 /usr/bin/snes9x -rwxr-xr-x 1 root root 975416 Jul 18 2000 /usr/bin/ssnes9x

    -- Scott Dier <diemanringworld.org> <sdierdebian.org> http://www.ringworld.org/ #linuxosirc.openprojects.net

    -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.6 (GNU/Linux)

    iD8DBQE7zFo5yXQl+65LXZIRAiBAAJ9nBnsYp+46oDOVvJhIoMydUhcB6ACeI2oz C4v+h0l9IUzR7Td4hGlWB0A= =Adze -----END PGP SIGNATURE-----