[BACK]Return to security.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/security.html between version 1.198 and 1.199

version 1.198, 2002/03/08 20:05:52 version 1.199, 2002/03/09 14:40:33
Line 195 
Line 195 
 <ul>  <ul>
 <li><a href=errata.html#openssh>March 8, 2002:  <li><a href=errata.html#openssh>March 8, 2002:
         An off-by-one check in OpenSSH's channel forwarding code          An off-by-one check in OpenSSH's channel forwarding code
         may allow a local user to gain super-user privileges.          may allow a local user to gain super-user privileges.</a>
 <li><a href=errata.html#ptrace>January 21, 2002:  <li><a href=errata.html#ptrace>January 21, 2002:
         A race condition between the ptrace(2) and execve(2) system calls          A race condition between the ptrace(2) and execve(2) system calls
         allows an attacker to modify the memory contents of suid/sgid          allows an attacker to modify the memory contents of suid/sgid
Line 232 
Line 232 
 <ul>  <ul>
 <li><a href=errata29.html#openssh>March 8, 2002:  <li><a href=errata29.html#openssh>March 8, 2002:
         An off-by-one check in OpenSSH's channel forwarding code          An off-by-one check in OpenSSH's channel forwarding code
         may allow a local user to gain super-user privileges.          may allow a local user to gain super-user privileges.</a>
 <li><a href=errata29.html#ptrace>January 21, 2002:  <li><a href=errata29.html#ptrace>January 21, 2002:
         A race condition between the ptrace(2) and execve(2) system calls          A race condition between the ptrace(2) and execve(2) system calls
         allows an attacker to modify the memory contents of suid/sgid          allows an attacker to modify the memory contents of suid/sgid

Legend:
Removed from v.1.198  
changed lines
  Added in v.1.199