>>>>> "Roger" == Roger Markus <> writes:

    >> > Karl Řie discovered that the Ubuntu 5.10 installer > failed
    >> to clean > passwords in the installer log files. Since these >
    >> files were > world-readable, any local user could see the >
    >> password > of the first > user account, which has full sudo
    >> privileges by > default.

    Roger> Ouch!  That one password system doesn't seem so good
    Roger> now....

Um, no.  This particular bug could happen to any install script that
"helpfully" sets up a root account for you.  So it actually
demonstrates *why* the one-password setup is a good idea: because you
only have to worry about that one.  Eg, you could do a recursive grep
for it on /, and find all the rootkits that have logged it, I bet.

Also, remember that anybody who has shell access is already past the
(on average) hardest hurdle already.

Uva Coder is welcome to chime in about the virtues of Plan 9 right
about here, though.

