Path: utzoo!utgpu!cs.utexas.edu!wuarchive!zaphod.mps.ohio-state.edu!rpi!uupsi!ficc!peter From: peter@ficc.ferranti.com (Peter da Silva) Newsgroups: alt.sources.d Subject: Re: sux, an enhancer for su Summary: sux sucks. Message-ID: <7WYA.A2@xds13.ferranti.com> Date: 24 Apr 91 22:56:15 GMT References: <462@frcs.UUCP> Reply-To: peter@ficc.ferranti.com (Peter da Silva) Organization: Xenix Support, FICC Lines: 12 In article <462@frcs.UUCP> paul@frcs.UUCP (Paul Nash) writes: > I recently hacked up a fairly trivial enhancer for `su', that allows > members of group `wheel' to su at will _without_ needing the root > password. Can you say security problem? I knew you could. My boss did something like this until I talked him out of it. You've now opened a whole new class of paths to the keys to the kingdom. -- Peter da Silva. `-_-' peter@ferranti.com +1 713 274 5180. 'U` "Have you hugged your wolf today?"