version 1.374, 2002/02/04 21:21:04 |
version 1.375, 2002/03/08 19:50:52 |
|
|
<a name=all></a> |
<a name=all></a> |
<li><h3><font color=#e00000>All architectures</font></h3> |
<li><h3><font color=#e00000>All architectures</font></h3> |
<ul> |
<ul> |
|
<a name=openssh></a> |
|
<li><font color=#009000><strong>014: SECURITY FIX: March 8, 2002</strong></font><br> |
|
A local user can gain super-user privileges due to an off-by-one check |
|
in the channel forwarding code of OpenSSH.<br> |
|
<a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.0/common/014_openssh.patch">A source code patch exists which remedies the problem</a>. |
|
<p> |
<a name=syspipe></a> |
<a name=syspipe></a> |
<li><font color=#009000><strong>013: RELIABILITY FIX: February 4, 2002</strong></font><br> |
<li><font color=#009000><strong>013: RELIABILITY FIX: February 4, 2002</strong></font><br> |
The wrong filedescriptors are released when pipe(2) failed.<br> |
The wrong filedescriptors are released when pipe(2) failed.<br> |