check_icmp issues warning and does not run

Hugo van der Kooij hvdkooij at vanderkooij.org
Sun Jun 1 12:13:07 CEST 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Nguyen, Tham wrote:

| I also checked under /usr/local/nagios/libexec folder and check_icmp is
| running under user root.  I changed root to nagios user and it produced
| the same error.
|
| -rwxrwxrwx 1 root root  85170 May 15 16:26 check_icmp

This is BAD! Every user on your system can write to that file. With the
added SUID stuff you have now created a very lazy way of breaking into
your system and becoming root.

Hugo.

- --
hvdkooij at vanderkooij.org               http://hugo.vanderkooij.org/
PGP/GPG? Use: http://hugo.vanderkooij.org/0x58F19981.asc

	A: Yes.
	>Q: Are you sure?
	>>A: Because it reverses the logical flow of conversation.
	>>>Q: Why is top posting frowned upon?

Bored? Click on http://spamornot.org/ and rate those images.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (GNU/Linux)

iD8DBQFIQnYxBvzDRVjxmYERAhqrAJ9b2B/OO8PsgfN1Xo4sd2c5/sLCmACgs+Ip
bqPgyj4qEbgGn8BcJVtsfjM=
=Ny4Q
-----END PGP SIGNATURE-----

-------------------------------------------------------------------------
This SF.net email is sponsored by: Microsoft
Defy all challenges. Microsoft(R) Visual Studio 2008.
http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
_______________________________________________
Nagios-users mailing list
Nagios-users at lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/nagios-users
::: Please include Nagios version, plugin version (-v) and OS when reporting any issue. 
::: Messages without supporting info will risk being sent to /dev/null





More information about the Users mailing list