Caldera UnixWare Encrypted root Password Local Disclosure Vulnerability

Solution:
As a solution, Caldera instructs administrators to change the mode of /var/adm/isl/ifile to be readable only by root:

# chmod 400 /var/adm/isl/ifile

Caldera also suggests that the root and owner passwords be changed.

Furthermore, the integrity of the system should be checked to ensure that compromise of root access has not already occured.



 

Privacy Statement
Copyright 2010, SecurityFocus