bhyve.int.autonlab.org daily security run output

punosevac72 at gmail.com punosevac72 at gmail.com
Fri Jul 31 03:03:13 EDT 2015


Checking setuid files and devices:

bhyve.int.autonlab.org setuid diffs:
--- /var/log/setuid.today	2015-07-25 03:07:40.000000000 -0400
+++ /tmp/security.d16YXqh9	2015-07-31 03:02:05.589050248 -0400
@@ -1,4 +1,139 @@
    65 -r-sr-xr-x  1 root  wheel      19440 May 14 12:51:21 2015 /bin/rcp
+   13 -r-sr-xr-x  1 root  wheel      19968 Nov 11 16:03:13 2014 /iocage/base/10.1-RELEASE/root/bin/rcp
+   30 -r-sr-xr--  1 root  operator    9984 Nov 11 16:03:20 2014 /iocage/base/10.1-RELEASE/root/sbin/mksnap_ffs
+   11 -r-sr-xr-x  1 root  wheel      28080 Nov 11 16:03:20 2014 /iocage/base/10.1-RELEASE/root/sbin/ping
+   33 -r-sr-xr-x  1 root  wheel      36984 Nov 11 16:03:20 2014 /iocage/base/10.1-RELEASE/root/sbin/ping6
+   51 -r-sr-xr--  2 root  operator   15712 Nov 11 16:03:20 2014 /iocage/base/10.1-RELEASE/root/sbin/poweroff
+   51 -r-sr-xr--  2 root  operator   15712 Nov 11 16:03:20 2014 /iocage/base/10.1-RELEASE/root/sbin/shutdown
+  127 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/base/10.1-RELEASE/root/usr/bin/at
+  127 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/base/10.1-RELEASE/root/usr/bin/atq
+  127 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/base/10.1-RELEASE/root/usr/bin/atrm
+  127 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/base/10.1-RELEASE/root/usr/bin/batch
+  199 -r-xr-sr-x  1 root  kmem       13104 Nov 11 16:03:31 2014 /iocage/base/10.1-RELEASE/root/usr/bin/btsockstat
+  137 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/base/10.1-RELEASE/root/usr/bin/chfn
+  137 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/base/10.1-RELEASE/root/usr/bin/chpass
+  137 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/base/10.1-RELEASE/root/usr/bin/chsh
+  223 -r-sr-xr-x  1 root  wheel      32680 Nov 11 16:03:38 2014 /iocage/base/10.1-RELEASE/root/usr/bin/crontab
+  383 -r-sr-xr-x  1 root  wheel      11496 Nov 11 16:03:33 2014 /iocage/base/10.1-RELEASE/root/usr/bin/lock
+  123 -r-sr-xr-x  1 root  wheel      25896 Nov 11 16:03:33 2014 /iocage/base/10.1-RELEASE/root/usr/bin/login
+  282 -r-sr-sr-x  1 root  daemon     33072 Nov 11 16:03:39 2014 /iocage/base/10.1-RELEASE/root/usr/bin/lpq
+  359 -r-sr-sr-x  1 root  daemon     38576 Nov 11 16:03:39 2014 /iocage/base/10.1-RELEASE/root/usr/bin/lpr
+   13 -r-sr-sr-x  1 root  daemon     32896 Nov 11 16:03:39 2014 /iocage/base/10.1-RELEASE/root/usr/bin/lprm
+  167 -r-xr-sr-x  1 root  kmem      146432 Nov 11 16:03:33 2014 /iocage/base/10.1-RELEASE/root/usr/bin/netstat
+  236 -r-sr-xr-x  1 root  wheel       7160 Nov 11 16:03:33 2014 /iocage/base/10.1-RELEASE/root/usr/bin/opieinfo
+  253 -r-sr-xr-x  1 root  wheel      13792 Nov 11 16:03:34 2014 /iocage/base/10.1-RELEASE/root/usr/bin/opiepasswd
+  234 -r-sr-xr-x  2 root  wheel       8392 Nov 11 16:03:34 2014 /iocage/base/10.1-RELEASE/root/usr/bin/passwd
+  254 -r-sr-xr-x  1 root  wheel      15704 Nov 11 16:03:34 2014 /iocage/base/10.1-RELEASE/root/usr/bin/quota
+   91 -r-sr-xr-x  1 root  wheel      15656 Nov 11 16:03:34 2014 /iocage/base/10.1-RELEASE/root/usr/bin/rlogin
+  145 -r-sr-xr-x  1 root  wheel      11632 Nov 11 16:03:34 2014 /iocage/base/10.1-RELEASE/root/usr/bin/rsh
+  259 -r-sr-xr-x  1 root  wheel      17656 Nov 11 16:03:34 2014 /iocage/base/10.1-RELEASE/root/usr/bin/su
+  220 -r-xr-sr-x  1 root  tty        16144 Nov 11 16:03:35 2014 /iocage/base/10.1-RELEASE/root/usr/bin/wall
+  180 -r-xr-sr-x  1 root  tty        12080 Nov 11 16:03:35 2014 /iocage/base/10.1-RELEASE/root/usr/bin/write
+  137 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/base/10.1-RELEASE/root/usr/bin/ypchfn
+  137 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/base/10.1-RELEASE/root/usr/bin/ypchpass
+  137 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/base/10.1-RELEASE/root/usr/bin/ypchsh
+  234 -r-sr-xr-x  2 root  wheel       8392 Nov 11 16:03:34 2014 /iocage/base/10.1-RELEASE/root/usr/bin/yppasswd
+  194 -r-xr-sr-x  1 root  smmsp     692520 Nov 11 16:03:40 2014 /iocage/base/10.1-RELEASE/root/usr/libexec/sendmail/sendmail
+   27 -r-sr-xr-x  1 root  wheel      39040 Nov 11 16:03:22 2014 /iocage/base/10.1-RELEASE/root/usr/libexec/ssh-keysign
+   25 -r-sr-xr-x  1 root  wheel       6072 Nov 11 16:03:12 2014 /iocage/base/10.1-RELEASE/root/usr/libexec/ulog-helper
+  185 -r-sr-sr-x  2 root  authpf     24216 Nov 11 16:03:36 2014 /iocage/base/10.1-RELEASE/root/usr/sbin/authpf
+  185 -r-sr-sr-x  2 root  authpf     24216 Nov 11 16:03:36 2014 /iocage/base/10.1-RELEASE/root/usr/sbin/authpf-noip
+  201 -r-xr-sr-x  1 root  daemon     55936 Nov 11 16:03:39 2014 /iocage/base/10.1-RELEASE/root/usr/sbin/lpc
+  225 -r-sr-xr--  1 root  network   416120 Nov 11 16:03:40 2014 /iocage/base/10.1-RELEASE/root/usr/sbin/ppp
+  182 -r-sr-xr-x  1 root  wheel      21040 Nov 11 16:03:41 2014 /iocage/base/10.1-RELEASE/root/usr/sbin/timedc
+  159 -r-sr-xr-x  1 root  wheel      28424 Nov 11 16:03:41 2014 /iocage/base/10.1-RELEASE/root/usr/sbin/traceroute
+  193 -r-sr-xr-x  1 root  wheel      23976 Nov 11 16:03:41 2014 /iocage/base/10.1-RELEASE/root/usr/sbin/traceroute6
+  171 -r-xr-sr-x  1 root  kmem       11608 Nov 11 16:03:41 2014 /iocage/base/10.1-RELEASE/root/usr/sbin/trpt
+12034 -r-sr-xr-x  1 root  wheel      19968 Nov 11 16:03:13 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/bin/rcp
+12556 -r-sr-xr--  1 root  operator    9984 Nov 11 16:03:20 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/sbin/mksnap_ffs
+12481 -r-sr-xr-x  1 root  wheel      28080 Nov 11 16:03:20 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/sbin/ping
+12575 -r-sr-xr-x  1 root  wheel      36984 Nov 11 16:03:20 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/sbin/ping6
+12511 -r-sr-xr--  2 root  operator   15712 Nov 11 16:03:20 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/sbin/poweroff
+12511 -r-sr-xr--  2 root  operator   15712 Nov 11 16:03:20 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/sbin/shutdown
+11697 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/at
+11697 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/atq
+11697 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/atrm
+11697 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/batch
+11673 -r-xr-sr-x  1 root  kmem       13104 Nov 11 16:03:31 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/btsockstat
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/chfn
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/chpass
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/chsh
+11925 -r-sr-xr-x  1 root  wheel      32680 Nov 11 16:03:38 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/crontab
+11999 -r-sr-xr-x  1 root  wheel      11496 Nov 11 16:03:33 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/lock
+11918 -r-sr-xr-x  1 root  wheel      25896 Nov 11 16:03:33 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/login
+11767 -r-sr-sr-x  1 root  daemon     33072 Nov 11 16:03:39 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/lpq
+11664 -r-sr-sr-x  1 root  daemon     38576 Nov 11 16:03:39 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/lpr
+11658 -r-sr-sr-x  1 root  daemon     32896 Nov 11 16:03:39 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/lprm
+11705 -r-xr-sr-x  1 root  kmem      146432 Nov 11 16:03:33 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/netstat
+11674 -r-sr-xr-x  1 root  wheel       7160 Nov 11 16:03:33 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/opieinfo
+12010 -r-sr-xr-x  1 root  wheel      13792 Nov 11 16:03:34 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/opiepasswd
+11649 -r-sr-xr-x  2 root  wheel       8392 Nov 11 16:03:34 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/passwd
+11789 -r-sr-xr-x  1 root  wheel      15704 Nov 11 16:03:34 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/quota
+11812 -r-sr-xr-x  1 root  wheel      15656 Nov 11 16:03:34 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/rlogin
+11890 -r-sr-xr-x  1 root  wheel      11632 Nov 11 16:03:34 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/rsh
+11678 -r-sr-xr-x  1 root  wheel      17656 Nov 11 16:03:34 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/su
+11844 -r-xr-sr-x  1 root  tty        16144 Nov 11 16:03:35 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/wall
+11861 -r-xr-sr-x  1 root  tty        12080 Nov 11 16:03:35 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/write
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/ypchfn
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/ypchpass
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/ypchsh
+11649 -r-sr-xr-x  2 root  wheel       8392 Nov 11 16:03:34 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/bin/yppasswd
+11628 -r-xr-sr-x  1 root  smmsp     692520 Nov 11 16:03:40 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/libexec/sendmail/sendmail
+11451 -r-sr-xr-x  1 root  wheel      39040 Nov 11 16:03:22 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/libexec/ssh-keysign
+11455 -r-sr-xr-x  1 root  wheel       6072 Nov 11 16:03:12 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/libexec/ulog-helper
+  116 -r-sr-sr-x  2 root  authpf     24216 Nov 11 16:03:36 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/sbin/authpf
+  116 -r-sr-sr-x  2 root  authpf     24216 Nov 11 16:03:36 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/sbin/authpf-noip
+  225 -r-xr-sr-x  1 root  daemon     55936 Nov 11 16:03:39 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/sbin/lpc
+  122 -r-sr-xr--  1 root  network   416120 Nov 11 16:03:40 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/sbin/ppp
+  157 -r-sr-xr-x  1 root  wheel      21040 Nov 11 16:03:41 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/sbin/timedc
+  310 -r-sr-xr-x  1 root  wheel      28424 Nov 11 16:03:41 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/sbin/traceroute
+  136 -r-sr-xr-x  1 root  wheel      23976 Nov 11 16:03:41 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/sbin/traceroute6
+  328 -r-xr-sr-x  1 root  kmem       11608 Nov 11 16:03:41 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/sbin/trpt
+12034 -r-sr-xr-x  1 root  wheel      19968 Nov 11 16:03:13 2014 /iocage/releases/10.1-RELEASE/root/bin/rcp
+12556 -r-sr-xr--  1 root  operator    9984 Nov 11 16:03:20 2014 /iocage/releases/10.1-RELEASE/root/sbin/mksnap_ffs
+12481 -r-sr-xr-x  1 root  wheel      28080 Nov 11 16:03:20 2014 /iocage/releases/10.1-RELEASE/root/sbin/ping
+12575 -r-sr-xr-x  1 root  wheel      36984 Nov 11 16:03:20 2014 /iocage/releases/10.1-RELEASE/root/sbin/ping6
+12511 -r-sr-xr--  2 root  operator   15712 Nov 11 16:03:20 2014 /iocage/releases/10.1-RELEASE/root/sbin/poweroff
+12511 -r-sr-xr--  2 root  operator   15712 Nov 11 16:03:20 2014 /iocage/releases/10.1-RELEASE/root/sbin/shutdown
+11697 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/at
+11697 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/atq
+11697 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/atrm
+11697 -r-sr-xr-x  4 root  wheel      28576 Nov 11 16:03:31 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/batch
+11673 -r-xr-sr-x  1 root  kmem       13104 Nov 11 16:03:31 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/btsockstat
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/chfn
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/chpass
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/chsh
+11925 -r-sr-xr-x  1 root  wheel      32680 Nov 11 16:03:38 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/crontab
+11999 -r-sr-xr-x  1 root  wheel      11496 Nov 11 16:03:33 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/lock
+11918 -r-sr-xr-x  1 root  wheel      25896 Nov 11 16:03:33 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/login
+11767 -r-sr-sr-x  1 root  daemon     33072 Nov 11 16:03:39 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/lpq
+11664 -r-sr-sr-x  1 root  daemon     38576 Nov 11 16:03:39 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/lpr
+11658 -r-sr-sr-x  1 root  daemon     32896 Nov 11 16:03:39 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/lprm
+11705 -r-xr-sr-x  1 root  kmem      146432 Nov 11 16:03:33 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/netstat
+11674 -r-sr-xr-x  1 root  wheel       7160 Nov 11 16:03:33 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/opieinfo
+12010 -r-sr-xr-x  1 root  wheel      13792 Nov 11 16:03:34 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/opiepasswd
+11649 -r-sr-xr-x  2 root  wheel       8392 Nov 11 16:03:34 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/passwd
+11789 -r-sr-xr-x  1 root  wheel      15704 Nov 11 16:03:34 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/quota
+11812 -r-sr-xr-x  1 root  wheel      15656 Nov 11 16:03:34 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/rlogin
+11890 -r-sr-xr-x  1 root  wheel      11632 Nov 11 16:03:34 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/rsh
+11678 -r-sr-xr-x  1 root  wheel      17656 Nov 11 16:03:34 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/su
+11844 -r-xr-sr-x  1 root  tty        16144 Nov 11 16:03:35 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/wall
+11861 -r-xr-sr-x  1 root  tty        12080 Nov 11 16:03:35 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/write
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/ypchfn
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/ypchpass
+11656 -r-sr-xr-x  6 root  wheel      22640 Nov 11 16:03:31 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/ypchsh
+11649 -r-sr-xr-x  2 root  wheel       8392 Nov 11 16:03:34 2014 /iocage/releases/10.1-RELEASE/root/usr/bin/yppasswd
+11628 -r-xr-sr-x  1 root  smmsp     692520 Nov 11 16:03:40 2014 /iocage/releases/10.1-RELEASE/root/usr/libexec/sendmail/sendmail
+11451 -r-sr-xr-x  1 root  wheel      39040 Nov 11 16:03:22 2014 /iocage/releases/10.1-RELEASE/root/usr/libexec/ssh-keysign
+11455 -r-sr-xr-x  1 root  wheel       6072 Nov 11 16:03:12 2014 /iocage/releases/10.1-RELEASE/root/usr/libexec/ulog-helper
+  116 -r-sr-sr-x  2 root  authpf     24216 Nov 11 16:03:36 2014 /iocage/releases/10.1-RELEASE/root/usr/sbin/authpf
+  116 -r-sr-sr-x  2 root  authpf     24216 Nov 11 16:03:36 2014 /iocage/releases/10.1-RELEASE/root/usr/sbin/authpf-noip
+  225 -r-xr-sr-x  1 root  daemon     55936 Nov 11 16:03:39 2014 /iocage/releases/10.1-RELEASE/root/usr/sbin/lpc
+  122 -r-sr-xr--  1 root  network   416120 Nov 11 16:03:40 2014 /iocage/releases/10.1-RELEASE/root/usr/sbin/ppp
+  157 -r-sr-xr-x  1 root  wheel      21040 Nov 11 16:03:41 2014 /iocage/releases/10.1-RELEASE/root/usr/sbin/timedc
+  310 -r-sr-xr-x  1 root  wheel      28424 Nov 11 16:03:41 2014 /iocage/releases/10.1-RELEASE/root/usr/sbin/traceroute
+  136 -r-sr-xr-x  1 root  wheel      23976 Nov 11 16:03:41 2014 /iocage/releases/10.1-RELEASE/root/usr/sbin/traceroute6
+  328 -r-xr-sr-x  1 root  kmem       11608 Nov 11 16:03:41 2014 /iocage/releases/10.1-RELEASE/root/usr/sbin/trpt
 12380 -r-sr-xr--  1 root  operator    9520 May 14 12:51:47 2015 /sbin/mksnap_ffs
 12436 -r-sr-xr-x  1 root  wheel      27616 May 14 12:51:49 2015 /sbin/ping
 12386 -r-sr-xr-x  1 root  wheel      36520 May 14 12:51:49 2015 /sbin/ping6

Checking negative group permissions:

bhyve.int.autonlab.org changes in mounted filesystems:
--- /var/log/mount.today	2015-07-25 03:14:13.000000000 -0400
+++ /tmp/security.DNpKmJJx	2015-07-31 03:03:13.281205354 -0400
@@ -1,5 +1,36 @@
 devfs			/dev			devfs	rw,multilabel 	0 0
+devfs			/iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/dev devfs	rw,multilabel 	0 0
+fdescfs			/iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/dev/fd fdescfs	rw		0 0
 tank/ROOT/10.1-RELEASE-p25-up-20150725_002836 /			zfs	rw,noatime,nfsv4acls 	0 0
+tank/iocage		/iocage			zfs	rw,nfsv4acls 	0 0
+tank/iocage/.defaults	/iocage/.defaults	zfs	rw,nfsv4acls 	0 0
+tank/iocage/base	/iocage/base		zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE /iocage/base/10.1-RELEASE zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root /iocage/base/10.1-RELEASE/root zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/bin /iocage/base/10.1-RELEASE/root/bin zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/boot /iocage/base/10.1-RELEASE/root/boot zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/lib /iocage/base/10.1-RELEASE/root/lib zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/libexec /iocage/base/10.1-RELEASE/root/libexec zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/rescue /iocage/base/10.1-RELEASE/root/rescue zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/sbin /iocage/base/10.1-RELEASE/root/sbin zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/usr /iocage/base/10.1-RELEASE/root/usr zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/usr/bin /iocage/base/10.1-RELEASE/root/usr/bin zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/usr/include /iocage/base/10.1-RELEASE/root/usr/include zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/usr/lib /iocage/base/10.1-RELEASE/root/usr/lib zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/usr/lib32 /iocage/base/10.1-RELEASE/root/usr/lib32 zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/usr/libdata /iocage/base/10.1-RELEASE/root/usr/libdata zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/usr/libexec /iocage/base/10.1-RELEASE/root/usr/libexec zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/usr/sbin /iocage/base/10.1-RELEASE/root/usr/sbin zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/usr/share /iocage/base/10.1-RELEASE/root/usr/share zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.1-RELEASE/root/usr/src /iocage/base/10.1-RELEASE/root/usr/src zfs	rw,nfsv4acls 	0 0
+tank/iocage/download	/iocage/download	zfs	rw,nfsv4acls 	0 0
+tank/iocage/download/10.1-RELEASE /iocage/download/10.1-RELEASE zfs	rw,nfsv4acls 	0 0
+tank/iocage/jails	/iocage/jails		zfs	rw,nfsv4acls 	0 0
+tank/iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8 zfs	rw,nfsv4acls 	0 0
+tank/iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root zfs	rw,nfsv4acls 	0 0
+tank/iocage/releases	/iocage/releases	zfs	rw,nfsv4acls 	0 0
+tank/iocage/releases/10.1-RELEASE /iocage/releases/10.1-RELEASE zfs	rw,nfsv4acls 	0 0
+tank/iocage/releases/10.1-RELEASE/root /iocage/releases/10.1-RELEASE/root zfs	rw,nfsv4acls 	0 0
 tank/root		/root			zfs	rw,nfsv4acls 	0 0
 tank/tmp		/tmp			zfs	rw,nfsv4acls 	0 0
 tank/usr/home		/usr/home		zfs	rw,nfsv4acls 	0 0

Checking for uids of 0:
root 0
toor 0

Checking for passwordless accounts:

Checking login.conf permissions:

bhyve.int.autonlab.org ipfw denied packets:

bhyve.int.autonlab.org pf denied packets:
+++ /tmp/security.c3r79uqX	2015-07-31 03:03:13.384044660 -0400
+block return in all [ Evaluations: 309516 Packets: 185088 Bytes: 105595300 States: 0 ]
+block return quick from <bruteforce> to any [ Evaluations: 309516 Packets: 0 Bytes: 0 States: 0 ]
+block return in quick on egress proto tcp from <sshguard> to any port = ssh label "ssh bruteforce" [ Evaluations: 309516 Packets: 0 Bytes: 0 States: 0 ]
+block drop in quick on ! lo0 inet from 127.0.0.0/8 to any [ Evaluations: 309518 Packets: 0 Bytes: 0 States: 0 ]
+block drop in quick from urpf-failed to any [ Evaluations: 277511 Packets: 0 Bytes: 0 States: 0 ]
+block return in on ! lo0 proto tcp from any to any port 6000:6010 [ Evaluations: 277511 Packets: 0 Bytes: 0 States: 0 ]

bhyve.int.autonlab.org login failures:

bhyve.int.autonlab.org refused connections:

Checking for packages with security vulnerabilities:
Database fetched: Thu Jul 30 03:02:08 EDT 2015
libxml2-2.9.2_2
php55-5.5.24
curl-7.42.1
pcre-8.35_2
libressl-2.1.6
php55-gd-5.5.24
ruby-2.0.0.645,1

-- End of security output --


More information about the Autonlab-sysinfo mailing list