NeXTstep BuildDisk Vulnerability

BID:11

Info

NeXTstep BuildDisk Vulnerability

Bugtraq ID: 11
Class: Configuration Error
CVE:
Remote: No
Local: Yes
Published: Oct 02 1990 12:00AM
Updated: Oct 02 1990 12:00AM
Credit:
Vulnerable: NeXT NeXTstep 1.0 a
NeXT NeXTstep 1.0
Not Vulnerable: NeXT NeXTstep 2.0

Discussion

NeXTstep BuildDisk Vulnerability

On NeXT computers running any release of the system
software, the "BuildDisk" application is executable by all
users, this allows users to gain root access.

Solution / Fix

NeXTstep BuildDisk Vulnerability

Solution:
Change the permissions on the "BuildDisk" application
allowing only root to execute it. This can be accomplished
with the command:

# chmod 4700 /NextApps/BuildDisk

To remove "BuildDisk" from the default icon dock for new
users, do the following:

1. Create a new user account using the UserManager application.
2. Log into the machine as that new user.
3. Remove the BuildDisk application from the Application Dock by dragging
it out.
4. Log out of the new account and log back in as root.
5. Copy the file in ~newuser/.NeXT/.dock to /usr/template/user/.NeXT/.dock
(where ~newuser is the home directory of the new user account)
6. Set the protections appropriately using the following command:
# chmod 555 /usr/template/user/.NeXT/.dock
7. If you wish, with UserManager, remove the user account that you created
in step 1.

In release 2.0, the BuildDisk application will prompt for the
root password if it is run by a normal user.

References

NeXTstep BuildDisk Vulnerability

References:

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report