Click to See Complete Forum and Search --> : Security Warnings...


Concrete Geist
10-21-2001, 01:29 PM
I left my computer on all night, and I open the Terminal I left open, and found A LOT of security warnings. Here is a screen of just a few of them :

http://www.geocities.com/concreteclan/security.jpg www.geocities.com/concreteclan/security.html (http://www.geocities.com/concreteclan/security.html)
I'll take pics of some of the others if -(geist@cr181408-a)-(06:25pm)-((geist))-(~$)-
-->
Security Warning: Change in Suid Root files found :
- Added suid root files : /bin/linuxconf
- Added suid root files : /bin/mount
- Added suid root files : /bin/ping
- Added suid root files : /bin/su
- Added suid root files : /bin/umount
- Added suid root files : /sbin/pwdb_chkpwd
- Added suid root files : /sbin/unix_chkpwd
- Added suid root files : /usr/X11R6/bin/Xwrapper
- Added suid root files : /usr/X11R6/bin/xlock
- Added suid root files : /usr/bin/at
- Added suid root files : /usr/bin/cdda2wav
- Added suid root files : /usr/bin/chage
- Added suid root files : /usr/bin/chfn
- Added suid root files : /usr/bin/chsh
- Added suid root files : /usr/bin/crontab
- Added suid root files : /usr/bin/dumpreg
- Added suid root files : /usr/bin/gpasswd
- Added suid root files : /usr/bin/gpg
- Added suid root files : /usr/bin/imwheel-solo
- Added suid root files : /usr/bin/kcheckpass
- Added suid root files : /usr/bin/konsole_grantpty
- Added suid root files : /usr/bin/kppp
- Added suid root files : /usr/bin/ml85p
- Added suid root files : /usr/bin/newgrp
- Added suid root files : /usr/bin/passwd
- Added suid root files : /usr/bin/procmail
- Added suid root files : /usr/bin/restorefont
- Added suid root files : /usr/bin/restorepalette
- Added suid root files : /usr/bin/restoretextmode
- Added suid root files : /usr/bin/sperl5.6.0
- Added suid root files : /usr/bin/ssh
- Added suid root files : /usr/bin/suidperl
- Added suid root files : /usr/bin/urpmi
- Added suid root files : /usr/bin/zgv
- Added suid root files : /usr/libexec/pt_chown
- Added suid root files : /usr/sbin/pppd
- Added suid root files : /usr/sbin/suexec
- Added suid root files : /usr/sbin/userhelper
- Added suid root files : /usr/sbin/usernetctl

Security Warning: Changes in Suid Group files found :
- Added suid group files : /sbin/netreport
- Added suid group files : /usr/X11R6/bin/xhextris
- Added suid group files : /usr/bin/cdda2wav
- Added suid group files : /usr/bin/gnibbles
- Added suid group files : /usr/bin/gnobots2
- Added suid group files : /usr/bin/gnome-stones
- Added suid group files : /usr/bin/gnomine
- Added suid group files : /usr/bin/gnotravex
- Added suid group files : /usr/bin/gnotski
- Added suid group files : /usr/bin/gpg
- Added suid group files : /usr/bin/gtali
- Added suid group files : /usr/bin/gturing
- Added suid group files : /usr/bin/iagno
- Added suid group files : /usr/bin/kdesud
- Added suid group files : /usr/bin/locate
- Added suid group files : /usr/bin/lockfile
- Added suid group files : /usr/bin/mahjongg
- Added suid group files : /usr/bin/man
- Added suid group files : /usr/bin/procmail
- Added suid group files : /usr/bin/same-gnome
- Added suid group files : /usr/bin/slocate
- Added suid group files : /usr/bin/wall
- Added suid group files : /usr/bin/write
- Added suid group files : /usr/games/xsoldier
- Added suid group files : /usr/lib/emacs/20.7/i386-mandrake-linux/movemail
- Added suid group files : /usr/lib/evolution/movemail
- Added suid group files : /usr/lib/netscape/movemail
- Added suid group files : /usr/sbin/gnome-pty-helper
- Added suid group files : /usr/sbin/utempter
needed.

I'm having trouble getting the screen to work, so I'll copy the contents of my terminal.

and there is tons more..


[ 21 October 2001: Message edited by: Concrete Geist ]

[ 21 October 2001: Message edited by: Concrete Geist ]

[ 21 October 2001: Message edited by: Concrete Geist ]

[ 21 October 2001: Message edited by: Concrete Geist ]

X_console
10-21-2001, 02:13 PM
I'm going to move this to the Security Forum.

What did you do prior to this happening? Did you happen to upgrade your distribution? What security program reported this? Do you have your system to automatically update your packages at certain time frames?