8 ms·
Yes, but the most secure thing to do at this point _is_ to recreate the bug and then set a password for the root user. Otherwise the hole is still there for ot
by sephicr 9y ago
Yes, but the most secure thing to do at this point _is_ to recreate the bug and then set a password for the root user.
Otherwise the hole is still there for others to exploit.
- pilsetnieks 9y agoIf you set a root password, this bug still works, it seems to reset the root password. Edit: I was partly wrong. The bug still works if you disable root afterwards, then it reenables and resets it.
- ukblewis 9y agoYeah, you’re safe if you keep the foot account alive and you set a password for root. At least as far as I can tell...