[BACK]Return to errata.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/errata.html between version 1.352 and 1.353

version 1.352, 2001/08/25 11:25:42 version 1.353, 2001/08/29 22:25:27
Line 46 
Line 46 
 <a name=all></a>  <a name=all></a>
 <li><h3><font color=#e00000>All architectures</font></h3>  <li><h3><font color=#e00000>All architectures</font></h3>
 <ul>  <ul>
   <a name=lpd>
   <li><font color=#009000><strong>014: SECURITY FIX: August 29, 2001</strong></font><br>
   A security hole exists in <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=lpd&sektion=8">lpd(8)</a>
   that may allow an attacker with line printer access to gain root
   privileges.  A machine must be running lpd to be vulnerable (OpenBSD
   does not start lpd by default).  Only machines with line printer
   access (ie: listed in either /etc/hosts.lpd or /etc/hosts.equiv)
   may be used to mount an attack.
   <br>
   <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.9/common/014_lpd.patch">A source code patch exists which remedies the problem</a>
   <p>
 <a name=sendmail2>  <a name=sendmail2>
 <li><font color=#009000><strong>013: SECURITY FIX: August 21, 2001</strong></font><br>  <li><font color=#009000><strong>013: SECURITY FIX: August 21, 2001</strong></font><br>
 A security hole exists in <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=sendmail&sektion=8">sendmail(8)</a>  A security hole exists in <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=sendmail&sektion=8">sendmail(8)</a>

Legend:
Removed from v.1.352  
changed lines
  Added in v.1.353