[BACK]Return to security.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/security.html between version 1.212 and 1.213

version 1.212, 2002/06/26 06:10:47 version 1.213, 2002/06/26 19:07:53
Line 194 
Line 194 
   
 <p>  <p>
 <ul>  <ul>
   <li><a href=errata.html#modssl>June 26, 2002:
           A buffer overflow can occur in the .htaccess parsing code in
           mod_ssl httpd module, leading to possible remote crash.</a>
 <li><a href=errata.html#resolver>June 25, 2002:  <li><a href=errata.html#resolver>June 25, 2002:
         A potential buffer overflow in the DNS resolver has been found.</a>          A potential buffer overflow in the DNS resolver has been found.</a>
   <li><a href=errata.html#sshd>June 24, 2002:
           All versions of OpenSSH's sshd between 2.9.9 and 3.3 contain an
           input validation error that can result in an integer overflow and
           privilege escalation.</a>
 <li><a href=errata.html#httpd>June 19, 2002:  <li><a href=errata.html#httpd>June 19, 2002:
         A buffer overflow can occur during the interpretation of chunked          A buffer overflow can occur during the interpretation of chunked
         encoding in httpd(8), leading to possible remote crash.</a>          encoding in httpd(8), leading to possible remote crash.</a>
Line 232 
Line 239 
 <ul>  <ul>
 <li><a href=errata30.html#resolver>June 25, 2002:  <li><a href=errata30.html#resolver>June 25, 2002:
         A potential buffer overflow in the DNS resolver has been found.</a>          A potential buffer overflow in the DNS resolver has been found.</a>
   <li><a href=errata30.html#sshdauth>June 24, 2002:
           All versions of OpenSSH's sshd between 2.9.9 and 3.3 contain an
           input validation error that can result in an integer overflow and
           privilege escalation.</a>
   <li><a href=errata30.html#modssl>June 24, 2002:
           A buffer overflow can occur in the .htaccess parsing code in
           mod_ssl httpd module, leading to possible remote crash.</a>
   <li><a href=errata30.html#httpd>June 19, 2002:
           A buffer overflow can occur during the interpretation of chunked
           encoding in httpd(8), leading to possible remote crash.</a>
 <li><a href=errata30.html#fdalloc2>May 8, 2002:  <li><a href=errata30.html#fdalloc2>May 8, 2002:
         A race condition exists that could defeat the kernel's          A race condition exists that could defeat the kernel's
         protection of fd slots 0-2 for setuid processes.</a>          protection of fd slots 0-2 for setuid processes.</a>

Legend:
Removed from v.1.212  
changed lines
  Added in v.1.213