[ale] no root shell

James P. Kinney III jkinney at localnetsolutions.com
Mon Jul 8 16:33:09 EDT 2002


Yep. That's what I see from my testings as well. I thought it would
bypass, but it looks like your screwed without local console access.

Anybody got sudo access to vi?

On Mon, 2002-07-08 at 16:19, Joseph A Knapka wrote:
> "James P. Kinney III" wrote:
> > 
> > su -s /bin/sh  should force the use of /bin/sh
> 
> Perhaps, but it apparently does so by starting the default shell
> and then exec'ing the -s argument. (Actually if it were possible
> to get around using the shell specified in /etc/passwd, I think
> that would be a serious security hole - consider
> "su -s /bin/sh ftp" and similar).
> 
> -- Joe
> 
> > use your favorite
> > 
> > On Mon, 2002-07-08 at 15:25, Joseph A Knapka wrote:
> > > "James P. Kinney III" wrote:
> > > >
> > > > You will need to reboot the box with an alternate boot device, i.e. toms
> > > > root boot disk is good. Once in, edit the passwd file to point to a real
> > > > shell.
> > > >
> > > > You might be able to edit it by su. Don't use su - as this will cause it
> > > > to try and use the params for root. Without it, it should use the same
> > > > environment as the original user but with an effective uid of 0.
> > >
> > > It does start a new shell though (I just tried it). So unless
> > > you have some user available with a valid shell and the
> > > ability to edit /etc/passwd, you are going to have to
> > > boot the machine some other way to fix this.
> > >
> > > -- Joe
> > >
> > > > On Mon, 2002-07-08 at 13:27, Mazukna, Thomas wrote:
> > > > > Hi,
> > > > >
> > > > > I have an issue on my hands.
> > > > > the shell specified in passwd for root does not exist.
> > > > > how to get into "root" ?
> > > > >
> > > > > thanks,
> > > > > Tomas
> > > > >
> > > > > ---
> > > > > This message has been sent through the ALE general discussion list.
> > > > > See http://www.ale.org/mailing-lists.shtml for more info. Problems should be
> > > > > sent to listmaster at ale dot org.
> > > > --
> > > > James P. Kinney III   \Changing the mobile computing world/
> > > > President and CEO      \          one Linux user         /
> > > > Local Net Solutions,LLC \           at a time.          /
> > > > 770-493-8244             \.___________________________./
> > > >
> > > > GPG ID: 829C6CA7 James P. Kinney III (M.S. Physics)
> > > > <jkinney at localnetsolutions.com>
> > > > Fingerprint = 3C9E 6366 54FC A3FE BA4D 0659 6190 ADC3 829C 6CA7
> > > >
> > > >   ------------------------------------------------------------------------
> > > >                        Name: signature.asc
> > > >    signature.asc       Type: application/pgp-signature
> > > >                 Description: This is a digitally signed message part
> > >
> > > --
> > >    "Thanks to Microsoft, I am now blind in both eyes. They have
> > >     rolled back in my head so many times this week that they
> > >     are apparently stuck there now."
> > >       - Jonathan Rickman, regarding M$ anti-open-source PR.
> > >
> > > ---
> > > This message has been sent through the ALE general discussion list.
> > > See http://www.ale.org/mailing-lists.shtml for more info. Problems should be
> > > sent to listmaster at ale dot org.
> > --
> > James P. Kinney III   \Changing the mobile computing world/
> > President and CEO      \          one Linux user         /
> > Local Net Solutions,LLC \           at a time.          /
> > 770-493-8244             \.___________________________./
> > 
> > GPG ID: 829C6CA7 James P. Kinney III (M.S. Physics)
> > <jkinney at localnetsolutions.com>
> > Fingerprint = 3C9E 6366 54FC A3FE BA4D 0659 6190 ADC3 829C 6CA7
> > 
> >   ------------------------------------------------------------------------
> >                        Name: signature.asc
> >    signature.asc       Type: application/pgp-signature
> >                 Description: This is a digitally signed message part
> 
> -- 
>    "Thanks to Microsoft, I am now blind in both eyes. They have
>     rolled back in my head so many times this week that they
>     are apparently stuck there now."
>       - Jonathan Rickman, regarding M$ anti-open-source PR.
> 
> ---
> This message has been sent through the ALE general discussion list.
> See http://www.ale.org/mailing-lists.shtml for more info. Problems should be 
> sent to listmaster at ale dot org.
-- 
James P. Kinney III   \Changing the mobile computing world/
President and CEO      \          one Linux user         /
Local Net Solutions,LLC \           at a time.          /
770-493-8244             \.___________________________./

GPG ID: 829C6CA7 James P. Kinney III (M.S. Physics)
<jkinney at localnetsolutions.com>
Fingerprint = 3C9E 6366 54FC A3FE BA4D 0659 6190 ADC3 829C 6CA7 



 This is a digitally signed message part




More information about the Ale mailing list