Moozonian
Web Images Developer News Books Maps Shopping Moo-AI
Showing results for /etc/passwd
Titan-Apex v9.4 is analyzing data for '/etc/passwd'...
icon https://www.linkedin.com/posts/adnananik_linuxsecurity-cybersecurity-privilegeescalation-activity-7439031669640097792-JzYG

Linux Security Risk: Writable /etc/passwd Exploitation | Adnan An...

Linux Security Risk: Writable /etc/passwd Exploitation One small permission mistake in Linux can silently turn into a full system compromise. A classic example is a writable /etc/passwd file. In Lin...
icon https://bugs.launchpad.net/cinder/+bug/2004565

Bug #2004565 “non exploitable resource exhaustion with malicious....

This was found after playing with [1]. The vulnerability is currently not exploitable (see description below). In case you have a vmdk file like the following: ``` version=1 CID=b1a17f47 parentCID=ff...
icon https://bugs.launchpad.net/ecryptfs/+bug/627506

Bug #627506 “ecryptfs-migrate-home lacks networked passwd databa....

ecryptfs-migrate-home is hard coded to look at "/etc/passwd" only for home directories. The function starts at line 81 and is called "get_user_home ()". It is possible to use in the function "getent...
icon https://bugs.launchpad.net/debian/+source/awstats/+bug/1320709

Bug #1320709 “incorrect info in /usr/share/doc/awstats/README.De....

In the /usr/share/doc/awstats/README.Debian.gz file: if [ -x /usr/share/awstats/tools/update.sh ]; then su -l -c /usr/share/awstats/tools/update.sh www-data fi However this "su" ...
icon https://bugs.launchpad.net/bugs/523896

Bug #523896 “useradd: cannot lock /etc/passwd; try again later.” ...

Binary package hint: postfix Ubuntu 9.10, via Update Manager. SOLUTION: Look for /etc/group.lock, /etc/passwd.lock and /etc/shadow.lock files and remove them. Be careful to only remove the files e...
icon https://bugs.launchpad.net/ubuntu/+source/gnome-system-tools/+bug/372695

Bug #372695 “creating new user account silently fails when UID i....

As a system administrator, if you try to create a new account, using the graphical utility (System->Administration->Users and Groups) and you set the user id manually to a value that is already in use...
icon https://bugs.launchpad.net/ubuntu/+source/gnome-system-tools/+bug/488158

Bug #488158 “users-admin should leave adduser handle main group ....

Binary package hint: gnome-system-tools I have noticed differences with the adduser command. Are system-tools user and groups following policy and using debians useradd/adduser facility with its adm...
icon https://bugs.launchpad.net/bugs/379421

Bug #379421 “addgroup option to auto-create /home/group/

see https://wiki.ubuntu.com/MultiUserManagement Let groupadd have the option to create /home/group/ sgid directories. Sgid group directories are the means for users to easily collaborate on local fi...
icon https://bugs.launchpad.net/bugs/1770437

Bug #1770437 “juju-introspection.sh is full of bashisms” : Bugs :...

On a model deployed with Juju 2.2.8, backed by the OpenStack provider. The application in question is a web app, which runs as an unprivileged user, where interactive shell usage is not normally requ...
icon https://bugs.launchpad.net/bugs/1403102

Bug #1403102 “Glance allows users to download and delete any fil....

Updating image-location by update images API users can download any file for which glance-api has read permission. And the file for which glance-api has write permission will be deleted when users del...
icon https://bugs.launchpad.net/bugs/395281

Bug #395281 “pam_ck_connector.so is called for non-login session....

Binary package hint: gdm I have kerneloops installed and with new gdm from karmic the kernoops user is listed as real user in the gdm greeter. from /etc/passwd kernoops:x:112:65534:Kernel Oops Track...
icon https://doi.org/10.1007/0-387-34805-0_6

UNIX Password Security - Ten Years Later | Springer Nature Link

Passwords in the UNIX operating system are encrypted with the crypt algorithm and kept in the publicly-readable file /etc/passwd. This paper examines the vulnerability of UNIX to attacks on its passwo...
icon https://www.mendeley.com/catalogue/49a4e54a-b3ee-3445-91d2-fff38b8888c4

UNIX password security - Ten year... preview & related info | Men...

(1990) Feldmeier, Karn. Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics). Passwords in the UNIX operating system are...
icon https://www.linkedin.com/posts/undercodetesting_from-lfi-to-rce-the-hackers-playbook-for-activity-7409111216390074368-MeOY

LFI to RCE: Turning File Reads into Server Control | UNDERCODE TE...

From LFI to RCE: The Hacker’s Playbook for Turning File Reads Into Full Server Control + Video Introduction: Local File Inclusion (LFI) is often mistakenly seen as a low-severity vulnerability, merel...
icon https://dx.doi.org/10.1007/0-387-34805-0_6

UNIX Password Security - Ten Years Later | Springer Nature Link

Passwords in the UNIX operating system are encrypted with the crypt algorithm and kept in the publicly-readable file /etc/passwd. This paper examines the vulnerability of UNIX to attacks on its passwo...
icon https://bugs.launchpad.net/ubuntu/+source/consolekit/+bug/395281

Bug #395281 “pam_ck_connector.so is called for non-login session....

Binary package hint: gdm I have kerneloops installed and with new gdm from karmic the kernoops user is listed as real user in the gdm greeter. from /etc/passwd kernoops:x:112:65534:Kernel Oops Track...
icon https://bugs.launchpad.net/subiquity/+bug/1954719

Bug #1954719 “Ubuntu Server 20.04.3 autoinstall - User not avail....

As per documentation: - late-commands -- Shell commands to run after the install has completed successfully and any updates and packages installed, just before the system reboots. Doesn’t seem to b...