Advertisement
oe4skw

Buck-security

May 13th, 2013
90
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Bash 9.56 KB | None | 0 0
  1. ###########################
  2. #   buck-security 0.6     #
  3. ###########################
  4.  
  5. We will run 12 security checks now.
  6. This may take a while...
  7.  
  8.  
  9. [*] CHECK 1: World Writeable Files           [ WARNING ]
  10. The following files are writeable for all users.
  11. Learn more at http://buck-security.org/doc.html#c_wwf
  12. ######################################################
  13. /home/fcadmin/fcc-10.009-Linux.i686.deb
  14. /home/fcadmin/fcc-10.009-Linux.i686.tar.bz2
  15. /home/fcadmin/FCintro SystemRequirements Linux.pdf
  16. /home/fcadmin/fcserver-11.0.0.tgz
  17. /home/fcadmin/INFO Linux FC IntroEdition V11.pdf
  18. /var/www/weinbauer/components/com_virtuemart/shop_image/product/Weinvirtel_DAC_4ec44c869a9f0.jpg
  19. /var/www/weinbauer/components/com_virtuemart/shop_image/vendor/weingut_Lang_4ec41830108d4.jpg
  20. /var/www/form-your-body/configuration.php
  21. /var/www/stefan/projekte/weblogbuch/conf/funk.inc.php
  22. /var/www/stefan/projekte/weblogbuch/conf/php5.php
  23. /var/www/stefan/projekte/weblogbuch/conf/listnav.inc.php
  24. /var/www/stefan/projekte/weblogbuch/conf/qslMgr.inc.php
  25. /var/www/stefan/projekte/weblogbuch/conf/listview.inc.php
  26. /var/www/stefan/projekte/weblogbuch/conf/sess.inc.php
  27. /var/www/owncloud/data/admin/lucene_index/read.lock.file
  28. /var/www/owncloud/data/admin/lucene_index/write.lock.file
  29. /var/www/owncloud/data/admin/lucene_index/segments.gen
  30. /var/www/owncloud/data/admin/lucene_index/optimization.lock.file
  31. /var/www/owncloud/data/admin/lucene_index/_0.cfs
  32. /var/www/owncloud/data/admin/lucene_index/read-lock-processing.lock.file
  33. /var/www/owncloud/data/admin/lucene_index/_0.sti
  34. /var/www/owncloud/data/admin/lucene_index/_1.cfs
  35. /var/www/owncloud/data/admin/lucene_index/segments_3
  36. /var/www/owncloud/data/development/lucene_index/read.lock.file
  37. /var/www/owncloud/data/development/lucene_index/write.lock.file
  38. /var/www/owncloud/data/development/lucene_index/segments.gen
  39. /var/www/owncloud/data/development/lucene_index/optimization.lock.file
  40. /var/www/owncloud/data/development/lucene_index/read-lock-processing.lock.file
  41. /var/www/owncloud/data/development/lucene_index/_b.sti
  42. /var/www/owncloud/data/development/lucene_index/_a.sti
  43. /var/www/owncloud/data/development/lucene_index/_c.cfs
  44. /var/www/owncloud/data/development/lucene_index/_c.sti
  45. /var/www/owncloud/data/development/lucene_index/_d.cfs
  46. /var/www/owncloud/data/development/lucene_index/_d.sti
  47. /var/www/owncloud/data/development/lucene_index/_e.cfs
  48. /var/www/owncloud/data/development/lucene_index/_e.sti
  49. /var/www/owncloud/data/development/lucene_index/_f.cfs
  50. /var/www/owncloud/data/development/lucene_index/_f.sti
  51. /var/www/owncloud/data/development/lucene_index/_g.cfs
  52. /var/www/owncloud/data/development/lucene_index/_g.sti
  53. /var/www/owncloud/data/development/lucene_index/_h.cfs
  54. /var/www/owncloud/data/development/lucene_index/_g_1.del
  55. /var/www/owncloud/data/development/lucene_index/_h.sti
  56. /var/www/owncloud/data/development/lucene_index/_i.cfs
  57. /var/www/owncloud/data/development/lucene_index/_h_1.del
  58. /var/www/owncloud/data/development/lucene_index/_i.sti
  59. /var/www/owncloud/data/development/lucene_index/_j.cfs
  60. /var/www/owncloud/data/development/lucene_index/_i_1.del
  61. /var/www/owncloud/data/development/lucene_index/_k.cfs
  62. /var/www/owncloud/data/development/lucene_index/_b.cfs
  63. /var/www/owncloud/data/development/lucene_index/_a.cfs
  64. /var/www/owncloud/data/development/lucene_index/_j.sti
  65. /var/www/owncloud/data/development/lucene_index/_b_2.del
  66. /var/www/owncloud/data/development/lucene_index/segments_o
  67. /var/www/owncloud/data/development/lucene_index/_k.sti
  68. /var/www/owncloud/data/novarock/lucene_index/read.lock.file
  69. /var/www/owncloud/data/novarock/lucene_index/write.lock.file
  70. /var/www/owncloud/data/novarock/lucene_index/segments.gen
  71. /var/www/owncloud/data/novarock/lucene_index/optimization.lock.file
  72. /var/www/owncloud/data/novarock/lucene_index/read-lock-processing.lock.file
  73. /var/www/owncloud/data/novarock/lucene_index/_1e.cfs
  74. /var/www/owncloud/data/novarock/lucene_index/_1p.cfs
  75. /var/www/owncloud/data/novarock/lucene_index/_2b_1.del
  76. /var/www/owncloud/data/novarock/lucene_index/_d.cfs
  77. /var/www/owncloud/data/novarock/lucene_index/_d.sti
  78. /var/www/owncloud/data/novarock/lucene_index/_1p.sti
  79. /var/www/owncloud/data/novarock/lucene_index/_20.cfs
  80. /var/www/owncloud/data/novarock/lucene_index/_2b.sti
  81. /var/www/owncloud/data/novarock/lucene_index/_2n.cfs
  82. /var/www/owncloud/data/novarock/lucene_index/_2l.cfs
  83. /var/www/owncloud/data/novarock/lucene_index/_d_1.del
  84. /var/www/owncloud/data/novarock/lucene_index/_2m.cfs
  85. /var/www/owncloud/data/novarock/lucene_index/_13.sti
  86. /var/www/owncloud/data/novarock/lucene_index/_13_1.del
  87. /var/www/owncloud/data/novarock/lucene_index/_1e_1.del
  88. /var/www/owncloud/data/novarock/lucene_index/_2b.cfs
  89. /var/www/owncloud/data/novarock/lucene_index/_13.cfs
  90. /var/www/owncloud/data/novarock/lucene_index/_1e.sti
  91. /var/www/owncloud/data/novarock/lucene_index/_20.sti
  92. /var/www/owncloud/data/novarock/lucene_index/_2m.sti
  93. /var/www/owncloud/data/novarock/lucene_index/_2l.sti
  94. /var/www/owncloud/data/novarock/lucene_index/segments_31
  95. /var/www/teamspeak/ts3wi_3.4.1.rar
  96. /var/www/teamspeak/changelog.txt
  97. /var/www/teamspeak/config.php
  98. /var/www/teamspeak/favicon.ico
  99. /var/www/teamspeak/functions.inc.php
  100. /var/www/teamspeak/gpl-3.0.txt
  101. /var/www/teamspeak/header.php
  102. /var/www/teamspeak/index.php
  103. /var/www/teamspeak/INSTALL.txt
  104. /var/www/teamspeak/motd.txt
  105. /var/www/teamspeak/README.txt
  106. /var/www/teamspeak/screate_config.php
  107. /var/www/teamspeak/ts3admin.class.php
  108. /var/www/teamspeak/tsviewpub.php
  109. /var/www/teamspeak/updatecheck.php
  110. /run/sendmail/mta/smsocket
  111. 
  112.  
  113. [*] CHECK 2: World Writeable Directories     [ WARNING ]
  114. The following directories are writeable for all users.
  115. Learn more at http://buck-security.org/doc.html#c_wwd
  116. ######################################################
  117. /run/lock
  118. /run/shm
  119. /var/cache/common-lisp-controller
  120. /var/lib/php5
  121. /var/mail
  122. /var/www/owncloud/owncloud/apps
  123. /var/www/owncloud/owncloud/config
  124. /var/www/stefan/projekte/weblogbuch/conf
  125. /var/www/teamspeak/gfx
  126. /var/www/teamspeak/icons
  127. /var/www/teamspeak/libs
  128. /var/www/teamspeak/site
  129. /var/www/teamspeak/temp
  130. /var/www/teamspeak/templates
  131. /var/www/teamspeak/templates_c
  132. 
  133.  
  134. [*] CHECK 3: Sticky-Bit set for /tmp         [ OK ]
  135. 
  136.  
  137. [*] CHECK 4: Files where Setuid is used      [ WARNING ]
  138. The following programs have the SUID set. This might
  139. represent a security risk.
  140. Learn more at http://buck-security.org/doc.html#c_suids
  141. ######################################################
  142. /bin/fusermount
  143. /opt/fcsd/fcsd
  144. /opt/fcsd/fcisd
  145. /usr/sbin/uuidd
  146. /usr/sbin/sensible-mda
  147. /usr/bin/mtr
  148. /usr/bin/procmail
  149. /usr/bin/X
  150. /usr/lib/virtualbox/VBoxHeadless
  151. /usr/lib/virtualbox/VBoxNetAdpCtl
  152. /usr/lib/virtualbox/VBoxNetDHCP
  153. /usr/lib/virtualbox/VBoxSDL
  154. /usr/lib/virtualbox/VirtualBox
  155. /usr/lib/dbus-1.0/dbus-daemon-launch-helper
  156. 
  157.  
  158. [*] CHECK 5: Files where Setgid is used      [ WARNING ]
  159. The following programs have the SGID set. This might
  160. represent a security risk.
  161. Learn more at http://buck-security.org/doc.html#c_sgids
  162. ######################################################
  163. /opt/fcsd/fcsd
  164. /opt/fcsd/fcisd
  165. /usr/sbin/uuidd
  166. /usr/bin/mail-lock
  167. /usr/bin/mail-unlock
  168. /usr/bin/dotlockfile
  169. /usr/bin/mail-touchlock
  170. /usr/bin/screen
  171. /usr/bin/lockfile
  172. /usr/bin/procmail
  173. /usr/bin/X
  174. /usr/lib/mc/cons.saver
  175. /usr/lib/x2go/x2gosqlitewrapper
  176. /usr/lib/utempter/utempter
  177. /usr/lib/squid/getpwnam_auth
  178. /usr/lib/squid/pam_auth
  179. /usr/lib/sm.bin/sendmail
  180. /usr/lib/sm.bin/mailstats
  181. /usr/lib/virtualbox/VBoxHeadless
  182. /usr/lib/virtualbox/VBoxNetAdpCtl
  183. /usr/lib/virtualbox/VBoxNetDHCP
  184. /usr/lib/virtualbox/VBoxSDL
  185. /usr/lib/virtualbox/VirtualBox
  186. 
  187.  
  188. [*] CHECK 6: Check umask                     [ OK ]
  189. 
  190.  
  191. [*] CHECK 7: Find superusers                 [ OK ]
  192. 
  193.  
  194. [*] CHECK 8: Listening Services              [ WARNING ]
  195. The following programs are listening for incoming
  196. connections. Output format is port:program:listen_mode
  197. Learn more at http://buck-security/doc.html#c_services
  198. ######################################################
  199. 21:proftpd:LISTEN_ALL
  200. 22:sshd:LISTEN_ALL
  201. 25:sendmail:LISTEN_LOCAL
  202. 80:apache2:LISTEN_ALL
  203. 123:ntpd:LISTEN_ALL
  204. 587:sendmail:LISTEN_LOCAL
  205. 1194:openvpn:LISTEN_ALL
  206. 3130:UNKNOWN:LISTEN_ALL
  207. 3306:mysqld:LISTEN_LOCAL
  208. 8080:UNKNOWN:LISTEN_ALL
  209. 9987:ts3server_linu:LISTEN_ALL
  210. 10000:perl:LISTEN_ALL
  211. 10011:ts3server_linu:LISTEN_ALL
  212. 30033:ts3server_linu:LISTEN_ALL
  213. 46370:UNKNOWN:LISTEN_ALL
  214. 
  215.  
  216. [*] CHECK 9: Check firewall policies         [ WARNING ]
  217. The following iptables policies are set to ACCEPT
  218. which might be a security problem.
  219. Learn more at http://buck-security/doc.html#c_firewall
  220. ######################################################
  221. INPUT:ACCEPT
  222. FORWARD:ACCEPT
  223. OUTPUT:ACCEPT
  224. 
  225.  
  226. [*] CHECK 10: Check if sshd is secured       [ WARNING ]
  227. The following sshd options aren't set to a secure value.
  228. Learn more at http://buck-security.org/doc.html#c_sshd
  229. ######################################################
  230. Port
  231. 
  232.  
  233. [*] CHECK 11: Search problematic packages    [ OK ]
  234. 
  235. ------------------
  236. STARTING CHECKSUM CHECK
  237. Decrypting checksum-file checksums.gpg ...
  238.  
  239.  
  240. [*] CHECK 12: Checksums of system programs   [ OK ]
  241. 
  242.  
  243. ###########################
  244. ###   CHECKS FINISHED   ###
  245. time taken was 13 seconds
  246. ###########################
  247.  
  248. ATTENTION:
  249. buck-security is still under heavy development, consider this a beta version.
  250. Your feedback is very welcome, please send it to maba4891@users.sourceforge.net.
  251. To get help run './buck --help' or visit http://www.buck-security.org/
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement