version 1.3, 2006/10/30 20:59:45 |
version 1.4, 2006/11/20 01:22:47 |
|
|
<a name="vax"></a> |
<a name="vax"></a> |
<ul> |
<ul> |
|
|
|
<li><a name="ldso"></a> |
|
<font color="#009000"><strong>016: SECURITY FIX: November 19, 2006</strong></font> <i>All architectures</i><br> |
|
<a href="http://www.openbsd.org/cgi-bin/man.cgi?query=ld.so&sektion=1">ld.so(1)</a> |
|
fails to properly sanitize the environement. There is a potential localhost security |
|
problem in cases we have not found yet. |
|
<br> |
|
<a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.9/common/016_ldso.patch"> |
|
A source code patch exists which remedies this problem</a>.<br> |
|
<p> |
|
|
<li><a name="ssh"></a> |
<li><a name="ssh"></a> |
<font color="#009000"><strong>015: SECURITY FIX: October 12, 2006</strong></font> <i>All architectures</i><br> |
<font color="#009000"><strong>015: SECURITY FIX: October 12, 2006</strong></font> <i>All architectures</i><br> |
Fix 2 security bugs found in OpenSSH. A pre-authentication denial of service (found |
Fix 2 security bugs found in OpenSSH. A pre-authentication denial of service (found |