version 1.539, 2005/06/21 04:04:27 |
version 1.540, 2005/07/08 03:25:36 |
|
|
<a name="vax"></a> |
<a name="vax"></a> |
<ul> |
<ul> |
|
|
|
<li><a name="libz"></a> |
|
<font color="#009000"><strong>004: SECURITY FIX: July 6, 2005</strong></font> <i>All architectures</i><br> |
|
A buffer overflow has been found in |
|
<a href="http://www.openbsd.org/cgi-bin/man.cgi?query=compress&sektion=3">compress(3)</a> |
|
which may be exploitable. |
|
<br> |
|
<a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.7/common/004_libz.patch"> |
|
A source code patch exists which remedies this problem</a>.<br> |
|
<p> |
|
|
<li><a name="sudo"></a> |
<li><a name="sudo"></a> |
<font color="#009000"><strong>003: SECURITY FIX: June 20, 2005</strong></font> <i>All architectures</i><br> |
<font color="#009000"><strong>003: SECURITY FIX: June 20, 2005</strong></font> <i>All architectures</i><br> |
Due to a race condition in its command pathname handling, a user with |
Due to a race condition in its command pathname handling, a user with |