[BACK]Return to security.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/security.html between version 1.229 and 1.230

version 1.229, 2002/11/06 23:37:17 version 1.230, 2002/11/15 01:58:33
Line 196 
Line 196 
   
 <p>  <p>
 <ul>  <ul>
   <li><a href=errata.html#named>November 14, 2002:
           A buffer overflow exists in named(8) that could lead to a
           remote crash or code execution as user named in a chroot jail.</a>
 <li><a href=errata.html#smrsh>November 6, 2002:  <li><a href=errata.html#smrsh>November 6, 2002:
         An attacker can bypass smrsh(8)'s restrictions and execute          An attacker can bypass smrsh(8)'s restrictions and execute
         arbitrary commands with the privileges of his own account.</a>          arbitrary commands with the privileges of his own account.</a>
Line 216 
Line 219 
   
 <p>  <p>
 <ul>  <ul>
   <li><a href=errata31.html#named>November 14, 2002:
           A buffer overflow exists in named(8) that could lead to a
           remote crash or code execution as user named in a chroot jail.</a>
 <li><a href=errata31.html#kernresource>November 6, 2002:  <li><a href=errata31.html#kernresource>November 6, 2002:
         Incorrect argument checking in the getitimer(2) system call          Incorrect argument checking in the getitimer(2) system call
         may allow an attacker to crash the system.</a>          may allow an attacker to crash the system.</a>
Line 291 
Line 297 
   
 <p>  <p>
 <ul>  <ul>
   <li><a href=errata30.html#named>November 14, 2002:
           A buffer overflow exists in named(8) that could lead to a
           remote crash or code execution as user named in a chroot jail.</a>
 <li><a href=errata30.html#kernresource>November 6, 2002:  <li><a href=errata30.html#kernresource>November 6, 2002:
         Incorrect argument checking in the getitimer(2) system call          Incorrect argument checking in the getitimer(2) system call
         may allow an attacker to crash the system.</a>          may allow an attacker to crash the system.</a>

Legend:
Removed from v.1.229  
changed lines
  Added in v.1.230