version 1.3, 2001/05/30 04:04:54 |
version 1.4, 2001/05/30 22:15:13 |
|
|
<a name=all></a> |
<a name=all></a> |
<li><h3><font color=#e00000>All architectures</font></h3> |
<li><h3><font color=#e00000>All architectures</font></h3> |
<ul> |
<ul> |
|
<a name=fts></a> |
|
<li><font color=#009000><strong>029: SECURITY FIX: May 30, 2001</strong></font><br> |
|
Programs using the <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=fts&sektion=3&format=html">fts(3)</a> |
|
routines (such as rm, find, and most programs that take a <b>-R</b> |
|
flag) can be tricked into changing into the wrong directory if the |
|
parent dir is changed out from underneath it. This is similar to |
|
the old fts bug but happens when popping out of directories, as |
|
opposed to descending into them. |
|
<a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.9/common/029_fts.patch">A source code patch exists which remedies the problem</a>. |
|
<p> |
<a name=sendmail></a> |
<a name=sendmail></a> |
<li><font color=#009000><strong>028: SECURITY FIX: May 29, 2001</strong></font><br> |
<li><font color=#009000><strong>028: SECURITY FIX: May 29, 2001</strong></font><br> |
The signal handlers in <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=sen |
The signal handlers in <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=sen |