http://qa.mandrakesoft.com/show_bug.cgi?id=408





------- Additional Comments From [EMAIL PROTECTED]  2003-03-14 22:15 -------
Fixed in MDKSA-2003:031-1.. sorry for the bogus/incomplete fix.



------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.



------- Reminder: -------
assigned_to: [EMAIL PROTECTED]
status: RESOLVED
creation_date: 
description: 
if you type 

shutdown now

as user, your system switches to runlevel 1 and you get a root-shell without any
root-password query.

That's a major security problem which brings Mandrake Linux in security-state
compareable with windows. The Redhat Announcement from two years ago:
http://www.linuxsecurity.com/advisories/redhat_advisory-673.html

Reply via email to