From owner-freebsd-security@FreeBSD.ORG Tue Sep 15 09:11:02 2009 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id DC905106566B for ; Tue, 15 Sep 2009 09:11:02 +0000 (UTC) (envelope-from utisoft@googlemail.com) Received: from mail-yw0-f229.google.com (mail-yw0-f229.google.com [209.85.211.229]) by mx1.freebsd.org (Postfix) with ESMTP id A34E88FC50 for ; Tue, 15 Sep 2009 09:11:02 +0000 (UTC) Received: by ywh18 with SMTP id 18so3004104ywh.3 for ; Tue, 15 Sep 2009 02:11:02 -0700 (PDT) MIME-Version: 1.0 In-Reply-To: <4AAF45B4.60307@isafeelin.org> Received: by 10.216.88.4 with SMTP id z4mr48369wee.25.1253002808919; Tue, 15 Sep 2009 01:20:08 -0700 (PDT) Message-ID: <0016e6d99efa540b8b047399738b@google.com> Date: Tue, 15 Sep 2009 08:20:08 +0000 From: utisoft@googlemail.com To: Frederique Rijsdijk , freebsd-security@freebsd.org X-Mailman-Approved-At: Tue, 15 Sep 2009 11:32:24 +0000 Content-Type: text/plain; charset=ISO-8859-1; format=flowed; delsp=yes X-Content-Filtered-By: Mailman/MimeDel 2.1.5 Cc: Subject: Re: FreeBSD bug grants local root access (FreeBSD 6.x) X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 15 Sep 2009 09:11:02 -0000 On 15 Sep 2009 08:43, Frederique Rijsdijk wrote: > Hi, > Any info on this subject on > http://www.theregister.co.uk/2009/09/14/freebsd_security_bug/ It appears to only affect 6.x.... and requires local access. If an attacker has local access to a machine you're screwed anyway. Chris