Multiple Vendor at(1) Vulnerability

Solution:
Removal of the setuid bit from at will prevent this vulnerability. It will also prevent at from functioning properly. Patches are available from SGI's support website at http://support.sgi.com.

The appropriate patches are as follow:
OS Version Patch #
---------- -------
IRIX 6.2 3182
IRIX 6.4 3184
IRIX 6.5 3286
IRIX 6.5.1 3286

Patches were issued for NetBSD versions 1.3.2 and prior. They are available at:
ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/patches/19980626-at



 

Privacy Statement
Copyright 2010, SecurityFocus