Mailinglist Archive: opensuse-security (231 mails)

< Previous Next >
Potential Local User Compromise
  • From: Ben Livingood <bgood@xxxxxxxxxxxxxxxxxxx>
  • Date: Thu, 26 Aug 1999 11:31:24 -0600
  • Message-id: <37C579EC.14BBC791@xxxxxxxxxxxxxxxxxxx>
In SuSE 6.1 if I start up X from console 1 it starts the Xserver on
console 7. Even through a locking program if I hit ctrl-alt-f1 I can hop
back to my old console and then background that process. The security
problem is if someone local to the machine was to hop on and do the same
he could gain access to my account, no fuss no muss. Is there a way to
defeat that bypass other than running @ Level 3 in init.d?
Ben
--
To Regret one's Mistakes,
Is To Regret
One's Experiences -O. Wilde

< Previous Next >