Would it be possible to mitigate this by setting the immutable flag on /etc/sudoers: chflags uchg /etc/sudoers
OS X sudoers exploit found in the wild
51–60 of 193 posts
Re: OS X sudoers exploit found in the wild
#52Re: OS X sudoers exploit found in the wild
#53Would it be possible to mitigate this by setting the immutable flag on /etc/sudoers: chflags uchg /etc/sudoers
Re: OS X sudoers exploit found in the wild
#54Oh man, I really want to do it on all the macs at the Apple store, and start a little botnet. Problem is, I don't really have any use for 10 or so rooted macs. I mean, I could rm them, but I'd never do that, that's mean. And I wouldn't feel good about using the camera, even though the computers are in public, it's icky. Perhaps a DoS? There's nobody that I dislike enough for that. I think I'd be so rich if I wasn't s…
There's a reason that the store staff are instructed to encourage you to leave the store if you open a terminal.
Re: OS X sudoers exploit found in the wild
#55I'm not sure who makes me more cranky: Apple for apparently sitting on the fix, or Stefan Esser for flinging the vulnerability into the breeze for anyone to catch. Esser has his reasons - "Short reminder: Europeans are not allowed to disclose vulns privately to a foreign company like Apple without registering dual-use export"[1] - but it's hard to believe he couldn't have told them anonymously. Disclosures make caree…
Then let me help you with this one. The former is responsibility of the worlds most profit corporation with tens of thousands of employees, and the latter is under the responsibility of a random guy on the internet.
Re: OS X sudoers exploit found in the wild
#56Re: OS X sudoers exploit found in the wild
#57Would it be possible to mitigate this by setting the immutable flag on /etc/sudoers: chflags uchg /etc/sudoers