bhyve.int.autonlab.org daily security run output

punosevac72 at gmail.com punosevac72 at gmail.com
Thu Oct 15 03:41:53 EDT 2015


Checking setuid files and devices:

bhyve.int.autonlab.org setuid diffs:
--- /var/log/setuid.today	2015-08-22 03:12:04.000000000 -0400
+++ /tmp/security.95pZQ3wZ	2015-10-15 03:02:49.069519972 -0400
@@ -44,6 +44,51 @@
    159 -r-sr-xr-x  1 root  wheel      28424 Nov 11 16:03:41 2014 /iocage/base/10.1-RELEASE/root/usr/sbin/traceroute
    193 -r-sr-xr-x  1 root  wheel      23976 Nov 11 16:03:41 2014 /iocage/base/10.1-RELEASE/root/usr/sbin/traceroute6
    171 -r-xr-sr-x  1 root  kmem       11608 Nov 11 16:03:41 2014 /iocage/base/10.1-RELEASE/root/usr/sbin/trpt
+    28 -r-sr-xr-x  1 root  wheel      19440 Oct 14 20:41:15 2015 /iocage/base/10.2-RELEASE/root/bin/rcp
+    46 -r-sr-xr--  1 root  operator    9984 Aug 12 11:27:14 2015 /iocage/base/10.2-RELEASE/root/sbin/mksnap_ffs
+    45 -r-sr-xr-x  1 root  wheel      28080 Aug 12 11:27:15 2015 /iocage/base/10.2-RELEASE/root/sbin/ping
+    74 -r-sr-xr-x  1 root  wheel      40648 Aug 12 11:27:15 2015 /iocage/base/10.2-RELEASE/root/sbin/ping6
+    44 -r-sr-xr--  2 root  operator   15712 Aug 12 11:27:15 2015 /iocage/base/10.2-RELEASE/root/sbin/poweroff
+    44 -r-sr-xr--  2 root  operator   15712 Aug 12 11:27:15 2015 /iocage/base/10.2-RELEASE/root/sbin/shutdown
+    91 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/base/10.2-RELEASE/root/usr/bin/at
+    91 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/base/10.2-RELEASE/root/usr/bin/atq
+    91 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/base/10.2-RELEASE/root/usr/bin/atrm
+    91 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/base/10.2-RELEASE/root/usr/bin/batch
+   347 -r-xr-sr-x  1 root  kmem       13104 Aug 12 11:27:30 2015 /iocage/base/10.2-RELEASE/root/usr/bin/btsockstat
+   132 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/base/10.2-RELEASE/root/usr/bin/chfn
+   132 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/base/10.2-RELEASE/root/usr/bin/chpass
+   132 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/base/10.2-RELEASE/root/usr/bin/chsh
+    86 -r-sr-xr-x  1 root  wheel      32296 Oct 14 20:41:15 2015 /iocage/base/10.2-RELEASE/root/usr/bin/crontab
+   297 -r-sr-xr-x  1 root  wheel      11496 Aug 12 11:27:33 2015 /iocage/base/10.2-RELEASE/root/usr/bin/lock
+   256 -r-sr-xr-x  1 root  wheel      25256 Oct 14 20:41:16 2015 /iocage/base/10.2-RELEASE/root/usr/bin/login
+    39 -r-sr-sr-x  1 root  daemon     33072 Aug 12 11:27:44 2015 /iocage/base/10.2-RELEASE/root/usr/bin/lpq
+   131 -r-sr-sr-x  1 root  daemon     38576 Aug 12 11:27:44 2015 /iocage/base/10.2-RELEASE/root/usr/bin/lpr
+   102 -r-sr-sr-x  1 root  daemon     32896 Aug 12 11:27:44 2015 /iocage/base/10.2-RELEASE/root/usr/bin/lprm
+   345 -r-xr-sr-x  1 root  kmem      144600 Oct 14 20:41:16 2015 /iocage/base/10.2-RELEASE/root/usr/bin/netstat
+    84 -r-sr-xr-x  1 root  wheel       6776 Oct 14 20:41:16 2015 /iocage/base/10.2-RELEASE/root/usr/bin/opieinfo
+    90 -r-sr-xr-x  1 root  wheel      13400 Oct 14 20:41:16 2015 /iocage/base/10.2-RELEASE/root/usr/bin/opiepasswd
+    38 -r-sr-xr-x  2 root  wheel       7928 Oct 14 20:41:16 2015 /iocage/base/10.2-RELEASE/root/usr/bin/passwd
+   116 -r-sr-xr-x  1 root  wheel      15712 Aug 12 11:27:34 2015 /iocage/base/10.2-RELEASE/root/usr/bin/quota
+   247 -r-sr-xr-x  1 root  wheel      15192 Oct 14 20:41:16 2015 /iocage/base/10.2-RELEASE/root/usr/bin/rlogin
+   365 -r-sr-xr-x  1 root  wheel      11168 Oct 14 20:41:16 2015 /iocage/base/10.2-RELEASE/root/usr/bin/rsh
+    16 -r-sr-xr-x  1 root  wheel      17200 Oct 14 20:41:16 2015 /iocage/base/10.2-RELEASE/root/usr/bin/su
+   310 -r-xr-sr-x  1 root  tty        16144 Aug 12 11:27:37 2015 /iocage/base/10.2-RELEASE/root/usr/bin/wall
+   290 -r-xr-sr-x  1 root  tty        12080 Aug 12 11:27:38 2015 /iocage/base/10.2-RELEASE/root/usr/bin/write
+   132 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/base/10.2-RELEASE/root/usr/bin/ypchfn
+   132 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/base/10.2-RELEASE/root/usr/bin/ypchpass
+   132 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/base/10.2-RELEASE/root/usr/bin/ypchsh
+    38 -r-sr-xr-x  2 root  wheel       7928 Oct 14 20:41:16 2015 /iocage/base/10.2-RELEASE/root/usr/bin/yppasswd
+    71 -r-xr-sr-x  1 root  smmsp     696888 Aug 12 11:27:47 2015 /iocage/base/10.2-RELEASE/root/usr/libexec/sendmail/sendmail
+    24 -r-sr-xr-x  1 root  wheel      39040 Aug 12 11:27:17 2015 /iocage/base/10.2-RELEASE/root/usr/libexec/ssh-keysign
+    22 -r-sr-xr-x  1 root  wheel       6072 Aug 12 11:27:02 2015 /iocage/base/10.2-RELEASE/root/usr/libexec/ulog-helper
+   170 -r-sr-sr-x  2 root  authpf     24216 Aug 12 11:27:39 2015 /iocage/base/10.2-RELEASE/root/usr/sbin/authpf
+   170 -r-sr-sr-x  2 root  authpf     24216 Aug 12 11:27:39 2015 /iocage/base/10.2-RELEASE/root/usr/sbin/authpf-noip
+    93 -r-xr-sr-x  1 root  daemon     55936 Aug 12 11:27:44 2015 /iocage/base/10.2-RELEASE/root/usr/sbin/lpc
+    52 -r-sr-xr--  1 root  network   416120 Aug 12 11:27:46 2015 /iocage/base/10.2-RELEASE/root/usr/sbin/ppp
+   186 -r-sr-xr-x  1 root  wheel      21040 Aug 12 11:27:47 2015 /iocage/base/10.2-RELEASE/root/usr/sbin/timedc
+   205 -r-sr-xr-x  1 root  wheel      32696 Aug 12 11:27:47 2015 /iocage/base/10.2-RELEASE/root/usr/sbin/traceroute
+   167 -r-sr-xr-x  1 root  wheel      23976 Aug 12 11:27:47 2015 /iocage/base/10.2-RELEASE/root/usr/sbin/traceroute6
+    11 -r-xr-sr-x  1 root  kmem       11608 Aug 12 11:27:47 2015 /iocage/base/10.2-RELEASE/root/usr/sbin/trpt
  12034 -r-sr-xr-x  1 root  wheel      19968 Nov 11 16:03:13 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/bin/rcp
  12556 -r-sr-xr--  1 root  operator    9984 Nov 11 16:03:20 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/sbin/mksnap_ffs
  12481 -r-sr-xr-x  1 root  wheel      28080 Nov 11 16:03:20 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/sbin/ping
@@ -89,6 +134,51 @@
    310 -r-sr-xr-x  1 root  wheel      28424 Nov 11 16:03:41 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/sbin/traceroute
    136 -r-sr-xr-x  1 root  wheel      23976 Nov 11 16:03:41 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/sbin/traceroute6
    328 -r-xr-sr-x  1 root  kmem       11608 Nov 11 16:03:41 2014 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/usr/sbin/trpt
+ 84632 -r-sr-xr-x  1 root  wheel      19440 Oct 14 20:41:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/bin/rcp
+ 12807 -r-sr-xr--  1 root  operator    9984 Aug 12 11:27:14 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/sbin/mksnap_ffs
+ 12778 -r-sr-xr-x  1 root  wheel      28080 Aug 12 11:27:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/sbin/ping
+ 12790 -r-sr-xr-x  1 root  wheel      40648 Aug 12 11:27:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/sbin/ping6
+ 12781 -r-sr-xr--  2 root  operator   15712 Aug 12 11:27:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/sbin/poweroff
+ 12781 -r-sr-xr--  2 root  operator   15712 Aug 12 11:27:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/sbin/shutdown
+  9697 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/at
+  9697 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/atq
+  9697 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/atrm
+  9697 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/batch
+  9942 -r-xr-sr-x  1 root  kmem       13104 Aug 12 11:27:30 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/btsockstat
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/chfn
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/chpass
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/chsh
+ 84648 -r-sr-xr-x  1 root  wheel      32296 Oct 14 20:41:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/crontab
+  9721 -r-sr-xr-x  1 root  wheel      11496 Aug 12 11:27:33 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/lock
+ 84652 -r-sr-xr-x  1 root  wheel      25256 Oct 14 20:41:16 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/login
+  9899 -r-sr-sr-x  1 root  daemon     33072 Aug 12 11:27:44 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/lpq
+  9995 -r-sr-sr-x  1 root  daemon     38576 Aug 12 11:27:44 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/lpr
+  9929 -r-sr-sr-x  1 root  daemon     32896 Aug 12 11:27:44 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/lprm
+ 84656 -r-xr-sr-x  1 root  kmem      144600 Oct 14 20:41:16 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/netstat
+ 84658 -r-sr-xr-x  1 root  wheel       6776 Oct 14 20:41:16 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/opieinfo
+ 84660 -r-sr-xr-x  1 root  wheel      13400 Oct 14 20:41:16 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/opiepasswd
+ 84662 -r-sr-xr-x  2 root  wheel       7928 Oct 14 20:41:16 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/passwd
+  9873 -r-sr-xr-x  1 root  wheel      15712 Aug 12 11:27:34 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/quota
+ 84664 -r-sr-xr-x  1 root  wheel      15192 Oct 14 20:41:16 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/rlogin
+ 84666 -r-sr-xr-x  1 root  wheel      11168 Oct 14 20:41:16 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/rsh
+ 84670 -r-sr-xr-x  1 root  wheel      17200 Oct 14 20:41:16 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/su
+  9751 -r-xr-sr-x  1 root  tty        16144 Aug 12 11:27:37 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/wall
+  9780 -r-xr-sr-x  1 root  tty        12080 Aug 12 11:27:38 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/write
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/ypchfn
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/ypchpass
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/ypchsh
+ 84662 -r-sr-xr-x  2 root  wheel       7928 Oct 14 20:41:16 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/bin/yppasswd
+ 12169 -r-xr-sr-x  1 root  smmsp     696888 Aug 12 11:27:47 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/libexec/sendmail/sendmail
+ 12015 -r-sr-xr-x  1 root  wheel      39040 Aug 12 11:27:17 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/libexec/ssh-keysign
+ 12014 -r-sr-xr-x  1 root  wheel       6072 Aug 12 11:27:02 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/libexec/ulog-helper
+   856 -r-sr-sr-x  2 root  authpf     24216 Aug 12 11:27:39 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/sbin/authpf
+   856 -r-sr-sr-x  2 root  authpf     24216 Aug 12 11:27:39 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/sbin/authpf-noip
+   864 -r-xr-sr-x  1 root  daemon     55936 Aug 12 11:27:44 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/sbin/lpc
+   789 -r-sr-xr--  1 root  network   416120 Aug 12 11:27:46 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/sbin/ppp
+   929 -r-sr-xr-x  1 root  wheel      21040 Aug 12 11:27:47 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/sbin/timedc
+   752 -r-sr-xr-x  1 root  wheel      32696 Aug 12 11:27:47 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/sbin/traceroute
+   819 -r-sr-xr-x  1 root  wheel      23976 Aug 12 11:27:47 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/sbin/traceroute6
+   992 -r-xr-sr-x  1 root  kmem       11608 Aug 12 11:27:47 2015 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/usr/sbin/trpt
  12034 -r-sr-xr-x  1 root  wheel      19968 Nov 11 16:03:13 2014 /iocage/releases/10.1-RELEASE/root/bin/rcp
  12556 -r-sr-xr--  1 root  operator    9984 Nov 11 16:03:20 2014 /iocage/releases/10.1-RELEASE/root/sbin/mksnap_ffs
  12481 -r-sr-xr-x  1 root  wheel      28080 Nov 11 16:03:20 2014 /iocage/releases/10.1-RELEASE/root/sbin/ping
@@ -134,6 +224,51 @@
    310 -r-sr-xr-x  1 root  wheel      28424 Nov 11 16:03:41 2014 /iocage/releases/10.1-RELEASE/root/usr/sbin/traceroute
    136 -r-sr-xr-x  1 root  wheel      23976 Nov 11 16:03:41 2014 /iocage/releases/10.1-RELEASE/root/usr/sbin/traceroute6
    328 -r-xr-sr-x  1 root  kmem       11608 Nov 11 16:03:41 2014 /iocage/releases/10.1-RELEASE/root/usr/sbin/trpt
+ 84632 -r-sr-xr-x  1 root  wheel      19440 Oct 14 20:41:15 2015 /iocage/releases/10.2-RELEASE/root/bin/rcp
+ 12807 -r-sr-xr--  1 root  operator    9984 Aug 12 11:27:14 2015 /iocage/releases/10.2-RELEASE/root/sbin/mksnap_ffs
+ 12778 -r-sr-xr-x  1 root  wheel      28080 Aug 12 11:27:15 2015 /iocage/releases/10.2-RELEASE/root/sbin/ping
+ 12790 -r-sr-xr-x  1 root  wheel      40648 Aug 12 11:27:15 2015 /iocage/releases/10.2-RELEASE/root/sbin/ping6
+ 12781 -r-sr-xr--  2 root  operator   15712 Aug 12 11:27:15 2015 /iocage/releases/10.2-RELEASE/root/sbin/poweroff
+ 12781 -r-sr-xr--  2 root  operator   15712 Aug 12 11:27:15 2015 /iocage/releases/10.2-RELEASE/root/sbin/shutdown
+  9697 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/at
+  9697 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/atq
+  9697 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/atrm
+  9697 -r-sr-xr-x  4 root  wheel      28576 Aug 12 11:27:30 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/batch
+  9942 -r-xr-sr-x  1 root  kmem       13104 Aug 12 11:27:30 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/btsockstat
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/chfn
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/chpass
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/chsh
+ 84648 -r-sr-xr-x  1 root  wheel      32296 Oct 14 20:41:15 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/crontab
+  9721 -r-sr-xr-x  1 root  wheel      11496 Aug 12 11:27:33 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/lock
+ 84652 -r-sr-xr-x  1 root  wheel      25256 Oct 14 20:41:16 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/login
+  9899 -r-sr-sr-x  1 root  daemon     33072 Aug 12 11:27:44 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/lpq
+  9995 -r-sr-sr-x  1 root  daemon     38576 Aug 12 11:27:44 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/lpr
+  9929 -r-sr-sr-x  1 root  daemon     32896 Aug 12 11:27:44 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/lprm
+ 84656 -r-xr-sr-x  1 root  kmem      144600 Oct 14 20:41:16 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/netstat
+ 84658 -r-sr-xr-x  1 root  wheel       6776 Oct 14 20:41:16 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/opieinfo
+ 84660 -r-sr-xr-x  1 root  wheel      13400 Oct 14 20:41:16 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/opiepasswd
+ 84662 -r-sr-xr-x  2 root  wheel       7928 Oct 14 20:41:16 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/passwd
+  9873 -r-sr-xr-x  1 root  wheel      15712 Aug 12 11:27:34 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/quota
+ 84664 -r-sr-xr-x  1 root  wheel      15192 Oct 14 20:41:16 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/rlogin
+ 84666 -r-sr-xr-x  1 root  wheel      11168 Oct 14 20:41:16 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/rsh
+ 84670 -r-sr-xr-x  1 root  wheel      17200 Oct 14 20:41:16 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/su
+  9751 -r-xr-sr-x  1 root  tty        16144 Aug 12 11:27:37 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/wall
+  9780 -r-xr-sr-x  1 root  tty        12080 Aug 12 11:27:38 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/write
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/ypchfn
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/ypchpass
+ 84646 -r-sr-xr-x  6 root  wheel      21768 Oct 14 20:41:15 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/ypchsh
+ 84662 -r-sr-xr-x  2 root  wheel       7928 Oct 14 20:41:16 2015 /iocage/releases/10.2-RELEASE/root/usr/bin/yppasswd
+ 12169 -r-xr-sr-x  1 root  smmsp     696888 Aug 12 11:27:47 2015 /iocage/releases/10.2-RELEASE/root/usr/libexec/sendmail/sendmail
+ 12015 -r-sr-xr-x  1 root  wheel      39040 Aug 12 11:27:17 2015 /iocage/releases/10.2-RELEASE/root/usr/libexec/ssh-keysign
+ 12014 -r-sr-xr-x  1 root  wheel       6072 Aug 12 11:27:02 2015 /iocage/releases/10.2-RELEASE/root/usr/libexec/ulog-helper
+   856 -r-sr-sr-x  2 root  authpf     24216 Aug 12 11:27:39 2015 /iocage/releases/10.2-RELEASE/root/usr/sbin/authpf
+   856 -r-sr-sr-x  2 root  authpf     24216 Aug 12 11:27:39 2015 /iocage/releases/10.2-RELEASE/root/usr/sbin/authpf-noip
+   864 -r-xr-sr-x  1 root  daemon     55936 Aug 12 11:27:44 2015 /iocage/releases/10.2-RELEASE/root/usr/sbin/lpc
+   789 -r-sr-xr--  1 root  network   416120 Aug 12 11:27:46 2015 /iocage/releases/10.2-RELEASE/root/usr/sbin/ppp
+   929 -r-sr-xr-x  1 root  wheel      21040 Aug 12 11:27:47 2015 /iocage/releases/10.2-RELEASE/root/usr/sbin/timedc
+   752 -r-sr-xr-x  1 root  wheel      32696 Aug 12 11:27:47 2015 /iocage/releases/10.2-RELEASE/root/usr/sbin/traceroute
+   819 -r-sr-xr-x  1 root  wheel      23976 Aug 12 11:27:47 2015 /iocage/releases/10.2-RELEASE/root/usr/sbin/traceroute6
+   992 -r-xr-sr-x  1 root  kmem       11608 Aug 12 11:27:47 2015 /iocage/releases/10.2-RELEASE/root/usr/sbin/trpt
  25925 -r-sr-xr--  1 root  operator    9520 Aug 21 14:24:23 2015 /sbin/mksnap_ffs
  25993 -r-sr-xr-x  1 root  wheel      27616 Aug 21 14:24:23 2015 /sbin/ping
  25997 -r-sr-xr-x  1 root  wheel      40184 Aug 21 14:24:23 2015 /sbin/ping6

Checking negative group permissions:

bhyve.int.autonlab.org changes in mounted filesystems:
--- /var/log/mount.today	2015-08-22 03:23:19.000000000 -0400
+++ /tmp/security.8OfWCtjt	2015-10-15 03:04:36.090513979 -0400
@@ -1,6 +1,8 @@
 devfs			/dev			devfs	rw,multilabel 	0 0
 devfs			/iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/dev devfs	rw,multilabel 	0 0
+devfs			/iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/dev devfs	rw,multilabel 	0 0
 fdescfs			/iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root/dev/fd fdescfs	rw		0 0
+fdescfs			/iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root/dev/fd fdescfs	rw		0 0
 tank/ROOT/10.2-RELEASE-up-20150821_175236 /			zfs	rw,noatime,nfsv4acls 	0 0
 tank/iocage		/iocage			zfs	rw,nfsv4acls 	0 0
 tank/iocage/.defaults	/iocage/.defaults	zfs	rw,nfsv4acls 	0 0
@@ -23,14 +25,37 @@
 tank/iocage/base/10.1-RELEASE/root/usr/sbin /iocage/base/10.1-RELEASE/root/usr/sbin zfs	rw,nfsv4acls 	0 0
 tank/iocage/base/10.1-RELEASE/root/usr/share /iocage/base/10.1-RELEASE/root/usr/share zfs	rw,nfsv4acls 	0 0
 tank/iocage/base/10.1-RELEASE/root/usr/src /iocage/base/10.1-RELEASE/root/usr/src zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE /iocage/base/10.2-RELEASE zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root /iocage/base/10.2-RELEASE/root zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/bin /iocage/base/10.2-RELEASE/root/bin zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/boot /iocage/base/10.2-RELEASE/root/boot zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/lib /iocage/base/10.2-RELEASE/root/lib zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/libexec /iocage/base/10.2-RELEASE/root/libexec zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/rescue /iocage/base/10.2-RELEASE/root/rescue zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/sbin /iocage/base/10.2-RELEASE/root/sbin zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/usr /iocage/base/10.2-RELEASE/root/usr zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/usr/bin /iocage/base/10.2-RELEASE/root/usr/bin zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/usr/include /iocage/base/10.2-RELEASE/root/usr/include zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/usr/lib /iocage/base/10.2-RELEASE/root/usr/lib zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/usr/lib32 /iocage/base/10.2-RELEASE/root/usr/lib32 zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/usr/libdata /iocage/base/10.2-RELEASE/root/usr/libdata zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/usr/libexec /iocage/base/10.2-RELEASE/root/usr/libexec zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/usr/sbin /iocage/base/10.2-RELEASE/root/usr/sbin zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/usr/share /iocage/base/10.2-RELEASE/root/usr/share zfs	rw,nfsv4acls 	0 0
+tank/iocage/base/10.2-RELEASE/root/usr/src /iocage/base/10.2-RELEASE/root/usr/src zfs	rw,nfsv4acls 	0 0
 tank/iocage/download	/iocage/download	zfs	rw,nfsv4acls 	0 0
 tank/iocage/download/10.1-RELEASE /iocage/download/10.1-RELEASE zfs	rw,nfsv4acls 	0 0
+tank/iocage/download/10.2-RELEASE /iocage/download/10.2-RELEASE zfs	rw,nfsv4acls 	0 0
 tank/iocage/jails	/iocage/jails		zfs	rw,nfsv4acls 	0 0
 tank/iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8 /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8 zfs	rw,nfsv4acls 	0 0
 tank/iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root /iocage/jails/12ca1d93-36f1-11e5-8746-0cc47a68b3d8/root zfs	rw,nfsv4acls 	0 0
+tank/iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8 /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8 zfs	rw,nfsv4acls 	0 0
+tank/iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root /iocage/jails/cfe482bc-72d6-11e5-9d85-0cc47a68b3d8/root zfs	rw,nfsv4acls 	0 0
 tank/iocage/releases	/iocage/releases	zfs	rw,nfsv4acls 	0 0
 tank/iocage/releases/10.1-RELEASE /iocage/releases/10.1-RELEASE zfs	rw,nfsv4acls 	0 0
 tank/iocage/releases/10.1-RELEASE/root /iocage/releases/10.1-RELEASE/root zfs	rw,nfsv4acls 	0 0
+tank/iocage/releases/10.2-RELEASE /iocage/releases/10.2-RELEASE zfs	rw,nfsv4acls 	0 0
+tank/iocage/releases/10.2-RELEASE/root /iocage/releases/10.2-RELEASE/root zfs	rw,nfsv4acls 	0 0
 tank/root		/root			zfs	rw,nfsv4acls 	0 0
 tank/tmp		/tmp			zfs	rw,nfsv4acls 	0 0
 tank/usr/home		/usr/home		zfs	rw,nfsv4acls 	0 0

Checking for uids of 0:
root 0
toor 0

Checking for passwordless accounts:

Checking login.conf permissions:

bhyve.int.autonlab.org pf denied packets:
+++ /tmp/security.PRgwKXut	2015-10-15 03:04:36.180513722 -0400
+block return in all [ Evaluations: 4108993 Packets: 2189947 Bytes: 1249100920 States: 0 ]
+block return quick from <bruteforce> to any [ Evaluations: 4109002 Packets: 43 Bytes: 1944 States: 0 ]
+block return in quick on egress proto tcp from <sshguard> to any port = ssh label "ssh bruteforce" [ Evaluations: 4108951 Packets: 0 Bytes: 0 States: 0 ]
+block drop in quick on ! lo0 inet from 127.0.0.0/8 to any [ Evaluations: 4108950 Packets: 0 Bytes: 0 States: 0 ]
+block drop in quick from urpf-failed to any [ Evaluations: 3733441 Packets: 0 Bytes: 0 States: 0 ]
+block return in on ! lo0 proto tcp from any to any port 6000:6010 [ Evaluations: 3733441 Packets: 0 Bytes: 0 States: 0 ]

bhyve.int.autonlab.org login failures:

bhyve.int.autonlab.org refused connections:

Checking for packages with security vulnerabilities:
php56-5.6.11
pcre-8.37_2
screen-4.3.1_1
go-1.4.2,1

-- End of security output --


More information about the Autonlab-sysinfo mailing list