Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 31 Oct 1997 09:26:56 -0500 (EST)
From:      X-Force <xforce@iss.net>
To:        freebsd-bugs@FreeBSD.ORG
Cc:        X-Force <xforce@arden.iss.net>
Subject:   FreeBSD open() Vulnerability
Message-ID:  <Pine.LNX.3.95.971031092524.13604A-100000@arden.iss.net>

index | next in thread | raw e-mail

Here is a preview of our ISS Summary that is going out on November 5,
1997.  This is for you to review for any possible additions or corrections
as well as make you aware of this Summary before it goes to our clients
and the public.

Any feedback would be appreciated.

Sincerely,
X-Force <xforce@iss.net>

___

Date Reported:          10/29/97
Vulnerability:          FreeBSD-open
Affected Platforms:     FreeBSD (2.1.x, 2.2.x)
                        FreeBSD-stable
                        FreeBSD-current
Risk Factor:            High

A problem exists in in the way that FreeBSD's open() system call obtains
the right to execute io instructions.  This problem has been corrected in
versions of FreeBSD-stable as of 10/23/97 and FreeBSD-current as of
10/24/97.

Reference:
ftp://freebsd.org/pub/CERT/advisories/FreeBSD-SA-97%3A05.open.asc
___






home | help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.LNX.3.95.971031092524.13604A-100000>