[BACK]Return to security.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/security.html between version 1.184 and 1.185

version 1.184, 2001/09/12 13:52:39 version 1.185, 2001/10/22 22:09:54
Line 192 
Line 192 
   
 <p>  <p>
 <ul>  <ul>
 <li><a href=errata.html#uucp>September 11, 2001:  <li><a href=errata29.html#uucp>September 11, 2001:
         A security hole exists in uuxqt(8) that may allow an          A security hole exists in uuxqt(8) that may allow an
         attacker to gain root privileges.</a>          attacker to gain root privileges.</a>
 <li><a href=errata.html#lpd>August 29, 2001:  <li><a href=errata29.html#lpd>August 29, 2001:
         A security hole exists in lpd(8) that may allow an          A security hole exists in lpd(8) that may allow an
         attacker to gain root privileges if lpd is running.</a>          attacker to gain root privileges if lpd is running.</a>
 <li><a href=errata.html#sendmail2>August 21, 2001:  <li><a href=errata29.html#sendmail2>August 21, 2001:
         A security hole exists in sendmail(8) that may allow an          A security hole exists in sendmail(8) that may allow an
         attacker on the local host to gain root privileges.</a>          attacker on the local host to gain root privileges.</a>
 <li><a href=errata.html#nfs>July 30, 2001:  <li><a href=errata29.html#nfs>July 30, 2001:
         A kernel buffer overflow in the NFS code can be used to execute          A kernel buffer overflow in the NFS code can be used to execute
         arbitrary code by users with mount privileges (only root by          arbitrary code by users with mount privileges (only root by
         default).</a>          default).</a>
 <li><a href=errata.html#kernexec>June 15, 2001:  <li><a href=errata29.html#kernexec>June 15, 2001:
         A race condition in the kernel can lead to local root compromise.</a>          A race condition in the kernel can lead to local root compromise.</a>
 <li><a href=errata.html#sshcookie>June 12, 2001:  <li><a href=errata29.html#sshcookie>June 12, 2001:
         sshd(8) allows users to delete arbitrary files named "cookies"          sshd(8) allows users to delete arbitrary files named "cookies"
         if X11 forwarding is enabled. X11 forwarding is disabled          if X11 forwarding is enabled. X11 forwarding is disabled
         by default.</a>          by default.</a>
 <li><a href=errata.html#fts>May 30, 2001:  <li><a href=errata29.html#fts>May 30, 2001:
         Programs using the fts routines can be tricked into changing          Programs using the fts routines can be tricked into changing
         into the wrong directory.</a>          into the wrong directory.</a>
 <li><a href=errata.html#sendmail>May 29, 2001:  <li><a href=errata29.html#sendmail>May 29, 2001:
         Sendmail signal handlers contain unsafe code,          Sendmail signal handlers contain unsafe code,
         leading to numerous race conditions.</a>          leading to numerous race conditions.</a>
 </ul>  </ul>

Legend:
Removed from v.1.184  
changed lines
  Added in v.1.185