===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/errata.html,v
retrieving revision 1.390
retrieving revision 1.391
diff -u -r1.390 -r1.391
--- www/errata.html 2002/04/25 16:39:30 1.390
+++ www/errata.html 2002/05/08 23:02:53 1.391
@@ -49,6 +49,13 @@
All architectures
+
+- 003: SECURITY FIX: May 8, 2002
+A race condition exists where an attacker could fill the file descriptor
+table and defeat the kernel's protection of fd slots 0, 1, and 2 for a
+setuid or setgid process.
+A source code patch exists which remedies the problem.
+
- 002: SECURITY FIX: April 25, 2002
A bug in sudo(8) may allow an attacker to corrupt the heap by specifying a custom prompt.
@@ -146,7 +153,7 @@
www@openbsd.org
-
$OpenBSD: errata.html,v 1.390 2002/04/25 16:39:30 millert Exp $
+
$OpenBSD: errata.html,v 1.391 2002/05/08 23:02:53 millert Exp $