Date: Tue, 21 Jun 2005 12:52:01 +0000 (UTC) From: "Sergey A. Osokin" <osa@FreeBSD.org> To: ports-committers@FreeBSD.org, cvs-ports@FreeBSD.org, cvs-all@FreeBSD.org Subject: cvs commit: ports/security/sudo Makefile distinfo Message-ID: <200506211252.j5LCq1VB040407@repoman.freebsd.org>
next in thread | raw e-mail | index | archive | help
osa 2005-06-21 12:52:01 UTC
FreeBSD ports repository
Modified files:
security/sudo Makefile distinfo
Log:
Security update to latest release: 1.6.8p9.
<Security Alert>
Summary:
A race condition in Sudo's command pathname handling prior
to Sudo version 1.6.8p9 that could allow a user with Sudo
privileges to run arbitrary commands.
Sudo versions affected:
Sudo versions 1.3.1 up to and including 1.6.8p8.
</Security Alert>
More information about this incident available at:
http://www.sudo.ws/sudo/alerts/path_race.html
Revision Changes Path
1.74 +2 -2 ports/security/sudo/Makefile
1.47 +2 -2 ports/security/sudo/distinfo
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200506211252.j5LCq1VB040407>
