"[EMAIL PROTECTED]" <[EMAIL PROTECTED]> writes on 
Fri, 20 Jun 2003 20:48:33 +0200 (METDST):


> Had KOEC intended to cause serious damage, that shellcode could have
> been
> written to execute:
> 
> rm -rf /
> 
> it is advised that users at least drop the privileges of suspect code
> with
> 'su' -- never run suspect files as highly-privileged users.


Just wanted to add: that won't help much in case it really IS a
local root exploit.

I call stuff like this "local curiosity exploit", admit to have 
fallen for that kind of traps in the past and repent my sins :-)

chris
(stand1ng 1n c0rn3r, watching the x-files) 
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html

Reply via email to