[BACK]Return to errata29.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/errata29.html between version 1.21 and 1.22

version 1.21, 2002/05/08 23:02:53 version 1.22, 2002/05/09 14:40:41
Line 52 
Line 52 
 <li><font color=#009000><strong>026: SECURITY FIX: May 8, 2002</strong></font><br>  <li><font color=#009000><strong>026: SECURITY FIX: May 8, 2002</strong></font><br>
 A race condition exists where an attacker could fill the file descriptor  A race condition exists where an attacker could fill the file descriptor
 table and defeat the kernel's protection of fd slots 0, 1, and 2 for a  table and defeat the kernel's protection of fd slots 0, 1, and 2 for a
 setuid or setgid process.  setuid or setgid process.<br>
 <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.9/common/026_fdalloc2.patch">A source code patch exists which remedies the problem</a>.  <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.9/common/026_fdalloc2.patch">A source code patch exists which remedies the problem</a>.
 <p>  <p>
 <a name=sudo2></a>  <a name=sudo2></a>

Legend:
Removed from v.1.21  
changed lines
  Added in v.1.22