From owner-freebsd-security Fri Apr 12 4:34:48 2002 Delivered-To: freebsd-security@freebsd.org Received: from koibito.iisc.com (koibito.iisc.com [198.5.5.5]) by hub.freebsd.org (Postfix) with ESMTP id 5A98A37B416 for ; Fri, 12 Apr 2002 04:34:43 -0700 (PDT) Received: from koibito.iisc.com ([127.0.0.1]) by koibito.iisc.com (8.9.0/8.9.0) with ESMTP id HAA23582 for ; Fri, 12 Apr 2002 07:34:42 -0400 (EDT) Message-Id: <200204121134.HAA23582@koibito.iisc.com> To: security@FreeBSD.ORG Subject: Re: [Corrected message] This OpenBSD local root hole may affect some FreeBSD systems In-Reply-To: Your message of "Thu, 11 Apr 2002 23:58:03 MDT." <4.3.2.7.2.20020411235129.00ba5bc0@nospam.lariat.org> Date: Fri, 12 Apr 2002 07:34:42 -0400 From: "Charles M. Richmond" Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org Up-to-date patched Solaris 8: amaterasu $ pwd /export/home/cmr amaterasu $ echo "~\!touch foo" | mail cmr amaterasu $ ls -l foo foo: No such file or directory amaterasu $ ls -l /usr/bin/mail -r-x--s--x 1 root mail 61080 Mar 6 18:01 /usr/bin/mail Up-to-date patched Solaris 7 taiyou $ pwd /export/home/cmr taiyou $ echo "~\!touch foo" | mail cmr taiyou $ ls -l foo foo: No such file or directory taiyou $ ls -l /usr/bin/mail -r-x--s--x 1 bin mail 66796 Mar 1 18:14 /usr/bin/mail To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message