Vesta Control Panel - Forum

Community Forum

Skip to content

Advanced search
  • Quick links
    • Main site
    • Github repo
    • Google Search
  • FAQ
  • Login
  • Register
  • Board index Main Section Web Server
  • Search

sudo: no tty present and no askpass program specified Sorry,

Questions regarding the Web Server
Apache + Nginx, Nginx + PHP5-FPM
Post Reply
  • Print view
Advanced search
3 posts • Page 1 of 1
quatroweb
Posts: 31
Joined: Wed Aug 20, 2014 8:21 am

sudo: no tty present and no askpass program specified Sorry,
  • Quote

Post by quatroweb » Thu Oct 09, 2014 5:41 am

Somebody know why I keep receiving e-mails from Cron Daemon with following ?

sudo: no tty present and no askpass program specified Sorry, try again.
sudo: no tty present and no askpass program specified Sorry, try again.
sudo: no tty present and no askpass program specified Sorry, try again.
sudo: 3 incorrect password attempts

I have disabled the reset password so the "forgot password" is not present at the login page!

Every time that happens, I am not able to login because the login page is just showing blank site.
I need to reset the root password to be able to login again..

It's not often I receive the messages, but when I do it keeps coming back within 20-30 min interval or so.

Could it be some kind of attack from a program or a person?
Top

F41L
Posts: 14
Joined: Sat Oct 11, 2014 7:50 pm

Re: sudo: no tty present and no askpass program specified So
  • Quote

Post by F41L » Sat Oct 11, 2014 9:14 pm

Have you checked your crontabs to see what scripts are running?

Also, when you create a user, there's an ability to give them shell access or not, perhaps someone is attempting to brute force your site?

Have you patched shellshock?
Top

quatroweb
Posts: 31
Joined: Wed Aug 20, 2014 8:21 am

Re: sudo: no tty present and no askpass program specified So
  • Quote

Post by quatroweb » Tue Oct 14, 2014 8:58 am

Thanks for the reply F41L

I'm not familiar with patching shellshock, could you guide me in the right direction (where in ubuntu to look etc)?

Actually I can see in the e-mail that I receive that it comes from: Cron <admin@domain> sudo /usr/local/vesta/bin/v-update-sys-queue backup

Is this giving you a better picture, or it's just to go ahead with paching shellshock?

UPDATE:

Actually I googled it and found a bash script to run in Ubuntu such as:

Code: Select all

env 'VAR=() { :;}; echo Bash is vulnerable!' 'FUNCTION()=() { :;}; echo Bash is vulnerable!' bash -c "echo Bash Test"
It gives the only output:

Code: Select all

Bash Test
So following what the page told I am in this question already protected against at least the first vulnerability (CVE-2014-6271) or Bash is safe from Shellshock ? Correct me if i'm wrong?

On the contrary the page told that if it gives the output:

Code: Select all

Bash is vulnerable!
Bash Test
Then my server might be vulnerable to CVE.

Any other ideas?
Top


Post Reply
  • Print view

3 posts • Page 1 of 1

Return to “Web Server”



  • Board index
  • All times are UTC
  • Delete all board cookies
  • The team
Powered by phpBB® Forum Software © phpBB Limited
*Original Author: Brad Veryard
*Updated to 3.2 by MannixMD
 

 

Login  •  Register

I forgot my password