[X-Unix] Re: Root Exploit via sudo
Timothy J. Luoma
lists at tntluoma.com
Fri Apr 8 12:04:44 PDT 2005
...... Original Message .......
On Fri, 8 Apr 2005 09:23:30 -0400 "Stephen Jonke" <sjj_public at mac.com>
wrote:
>you can do "sudo" in the terminal to your hearts
>content (for 5 minutes anyway.) I'll have to rethink such things now.
>The behavior of that should probably have its default behavior changed
>to not stay authenticated after the command is issued!
>
if you simply change the place where sudo logs to, the security hazard is
removed without added inconvenience.
More information about the X-Unix
mailing list