[BACK]Return to security.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/security.html between version 1.188 and 1.189

version 1.188, 2001/11/14 01:38:00 version 1.189, 2001/12/04 02:53:13
Line 193 
Line 193 
   
 <p>  <p>
 <ul>  <ul>
   <li><a href=errata.html#lpd>November 28, 2001:
           An attacker can trick a machine running the lpd daemon into
           creating new files in the root directory from a machine with
           remote line printer access.</a>
 <li><a href=errata.html#vi.recover>November 13, 2001:  <li><a href=errata.html#vi.recover>November 13, 2001:
         The vi.recover script can be abused in such a way as          The vi.recover script can be abused in such a way as
         to cause arbitrary zero-length files to be removed.</a>          to cause arbitrary zero-length files to be removed.</a>
Line 209 
Line 213 
   
 <p>  <p>
 <ul>  <ul>
   <li><a href=errata29.html#lpd2>November 28, 2001:
           An attacker can trick a machine running the lpd daemon into
           creating new files in the root directory from a machine with
           remote line printer access.</a>
 <li><a href=errata29.html#uucp>September 11, 2001:  <li><a href=errata29.html#uucp>September 11, 2001:
         A security hole exists in uuxqt(8) that may allow an          A security hole exists in uuxqt(8) that may allow an
         attacker to gain root privileges.</a>          attacker to gain root privileges.</a>

Legend:
Removed from v.1.188  
changed lines
  Added in v.1.189