Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 31 Oct 1997 09:26:56 -0500 (EST)
From:      X-Force <xforce@iss.net>
To:        freebsd-bugs@FreeBSD.ORG
Cc:        X-Force <xforce@arden.iss.net>
Subject:   FreeBSD open() Vulnerability
Message-ID:  <Pine.LNX.3.95.971031092524.13604A-100000@arden.iss.net>

next in thread | raw e-mail | index | archive | help
Here is a preview of our ISS Summary that is going out on November 5,
1997.  This is for you to review for any possible additions or corrections
as well as make you aware of this Summary before it goes to our clients
and the public.

Any feedback would be appreciated.

Sincerely,
X-Force <xforce@iss.net>

___

Date Reported:          10/29/97
Vulnerability:          FreeBSD-open
Affected Platforms:     FreeBSD (2.1.x, 2.2.x)
                        FreeBSD-stable
                        FreeBSD-current
Risk Factor:            High

A problem exists in in the way that FreeBSD's open() system call obtains
the right to execute io instructions.  This problem has been corrected in
versions of FreeBSD-stable as of 10/23/97 and FreeBSD-current as of
10/24/97.

Reference:
ftp://freebsd.org/pub/CERT/advisories/FreeBSD-SA-97%3A05.open.asc
___







Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.LNX.3.95.971031092524.13604A-100000>