Pablo Sor wrote: > The /usr/lib/exrecover contains a buffer overflow > (this command is suid in Solaris 2.4/5/6) Starting with Solaris 7 exrecover is no longer installed setuid root. It is safe to change the exrecover permissions to 0555 on all other releases since it doesn't need elevated privleges to do its job; /var/preserve is 1777. This is Sun bug# 4161925 -- Darren J Moffat
- Solaris /usr/lib/exrecover buffer overflow Pablo Sor
- Re: Solaris /usr/lib/exrecover buffer overflow Darren J Moffat
- Re: Solaris /usr/lib/exrecover buffer overflow Florian Weimer
