RShadow
July 11th, 2006, 10:46 AM
Can anbody see any reason why any of the following would need the suid bit set? (in a server enviornment)
/bin/su
/bin/check-foreground-console
/usr/bin/arping
/usr/bin/traceroute6
/usr/bin/chfn
/usr/bin/chsh
/usr/bin/gpasswd
/usr/bin/mtr
/usr/bin/newgrp
/usr/bin/passwd
/usr/bin/sudo
/usr/bin/X
/usr/sbin/suexec
/lib/dhcp3-client/call-dhclient-script
/lib/uncompress.o
/usr/lib/eject/dmcrypt-get-device
/usr/lib/openssh/ssh-keysign
/usr/lib/courier/authlib/changepwd/authdaemon.passwd
/usr/lib/pt_chown
/usr/lib/apache2/suexec2
The only ones that make sense is
/usr/sbin/sudo and /bin/su
/bin/su
/bin/check-foreground-console
/usr/bin/arping
/usr/bin/traceroute6
/usr/bin/chfn
/usr/bin/chsh
/usr/bin/gpasswd
/usr/bin/mtr
/usr/bin/newgrp
/usr/bin/passwd
/usr/bin/sudo
/usr/bin/X
/usr/sbin/suexec
/lib/dhcp3-client/call-dhclient-script
/lib/uncompress.o
/usr/lib/eject/dmcrypt-get-device
/usr/lib/openssh/ssh-keysign
/usr/lib/courier/authlib/changepwd/authdaemon.passwd
/usr/lib/pt_chown
/usr/lib/apache2/suexec2
The only ones that make sense is
/usr/sbin/sudo and /bin/su