Subject: Re: bin/620: security spoof possible with rlogin/telnet
To: Luke Mewburn <lukem@dodo.melb.cpr.itg.telecom.com.au>
From: matthew green <mrg@mame.mu.OZ.AU>
List: netbsd-bugs
Date: 12/09/1994 00:22:39
the best idea to solve this problem (i actually reported it
*months* ago, when the aix/linux bug was first discovered) is
to make login *not* accept `-froot' but only `-f root'.