Can we please stop talking about that sudo bug? It only affects systems using an insane configuration (allow $command as anyone *but* root). I can't come up with any situation where that configuration makes any sense (vs e.g. "allow $command as any member of a given group).
There are other escalation paths besides raw disk access. And, since enumerating them is problematic, any sudoers config that grants sudo to all users but root is vulnerable unless proven otherwise, and should never be used.
-
-
i'd be willing to hear an alternate example.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
I'd also like to have an example.
-
It's going to be different for different systems depending on setup and installed software (which is why the adm thing, which is the first I could come up with, is not universal). Poke around and I'm sure you'll find something :-)
- Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.