Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 22 Feb 2001 11:08:23 -0800
From:      "Bruce A. Mah" <bmah@FreeBSD.ORG>
To:        Cy Schubert - ITSD Open Systems Group <Cy.Schubert@uumail.gov.bc.ca>
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: Sudo version 1.6.3p6 now available (fwd) 
Message-ID:  <200102221908.f1MJ8NY42653@bmah-freebsd-0.cisco.com>
In-Reply-To: <200102221627.f1MGRk149151@cwsys.cwsent.com> 
References:  <200102221627.f1MGRk149151@cwsys.cwsent.com>

next in thread | previous in thread | raw e-mail | index | archive | help
--==_Exmh_1277318321P
Content-Type: text/plain; charset=us-ascii

If memory serves me right, Cy Schubert - ITSD Open Systems Group wrote:
> As I don't have time to submit a PR for the sudo port morning, I'm 
> sending this to -security.

[snip]

> Sudo version 1.6.3p6 is now available (ftp sites listed at the end).
> This fixes a *buffer overflow* in sudo which is a potential security
> problem.  I don't know of any exploits that currently exist but I
> suggest that you upgrade none the less.

Someone already updated the version in the ports tree:

bmah-freebsd-0:bmah% pkg_version -v | grep sudo
sudo-1.6.3.6                =   up-to-date with port

Cheers,

Bruce.




--==_Exmh_1277318321P
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.4 (FreeBSD)
Comment: Exmh version 2.2 06/23/2000

iD8DBQE6lWOn2MoxcVugUsMRAk0GAJ99ljDGM26OATNGZXKUxC/PsZzCxgCg1uxW
qsBsWilCwQMAFE75AxCJ0CU=
=Shis
-----END PGP SIGNATURE-----

--==_Exmh_1277318321P--

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200102221908.f1MJ8NY42653>