*BSD News Article 15269


Return to BSD News archive

Newsgroups: comp.os.386bsd.bugs
Path: sserve!newshost.anu.edu.au!munnari.oz.au!news.Hawaii.Edu!ames!agate!headwall.Stanford.EDU!kithrup.com!sef
From: sef@kithrup.com (Sean Eric Fagan)
Subject: Re: rlogin localhost (security hole)
Organization: Kithrup Enterprises, Ltd.
References: <1993Apr27.191444.29243@ibr.cs.tu-bs.de> <C65xo9.Et@veda.is>
Message-ID: <C6615x.G8s@kithrup.com>
Date: Tue, 27 Apr 1993 23:27:19 GMT
Lines: 12

In article <C65xo9.Et@veda.is> adam@veda.is (Adam David) writes:
>Possibly not related, it was brought to my attention that 'rlogin localhost'
>on a machine with an ethernet interface does the following:
>
>$ rlogin localhost
>localhost: Undefined error: 0

It does not do this on my system.  0.1+patchkit-0.2.3+misc.  Never has,
either.

In addition, SUID (and SGID) programs are not supposed to core-dump.