version 1.10, 2002/01/29 22:08:36 |
version 1.11, 2002/02/20 20:17:13 |
|
|
<a name=all></a> |
<a name=all></a> |
<li><h3><font color=#e00000>All architectures</font></h3> |
<li><h3><font color=#e00000>All architectures</font></h3> |
<ul> |
<ul> |
|
<a name=ptrace></a> |
|
<li><font color=#009000><strong>020: SECURITY FIX: February 20, 2002</strong></font><br> |
|
A race condition between the ptrace(2) and execve(2) system calls allows |
|
an attacker to modify the memory contents of suid/sgid processes which |
|
could lead to compromise of the super-user account.<br> |
|
<a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.9/common/020_ptrace.patch">A source code patch exists which remedies the problem</a>. |
|
<p> |
<a name=sudo> |
<a name=sudo> |
<li><font color=#009000><strong>019: SECURITY FIX: January 17, 2002</strong></font><br> |
<li><font color=#009000><strong>019: SECURITY FIX: January 17, 2002</strong></font><br> |
If the Postfix sendmail replacement is installed on a system an |
If the Postfix sendmail replacement is installed on a system an |