From owner-freebsd-stable Thu Mar 7 7:26:37 2002 Delivered-To: freebsd-stable@freebsd.org Received: from peitho.fxp.org (peitho.fxp.org [209.26.95.40]) by hub.freebsd.org (Postfix) with ESMTP id 581CD37B484 for ; Thu, 7 Mar 2002 07:25:23 -0800 (PST) Received: by peitho.fxp.org (Postfix, from userid 1501) id 22B9B1366C; Thu, 7 Mar 2002 10:24:42 -0500 (EST) Date: Thu, 7 Mar 2002 10:24:42 -0500 From: Chris Faulhaber To: Lauri Laupmaa Cc: stable@freebsd.org Subject: Re: openssh root hole? Message-ID: <20020307152441.GB82709@peitho.fxp.org> References: <3C87844B.DC68BEBF@inspiral.net> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="Pd0ReVV5GZGQvF3a" Content-Disposition: inline In-Reply-To: <3C87844B.DC68BEBF@inspiral.net> User-Agent: Mutt/1.3.24i Sender: owner-freebsd-stable@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG --Pd0ReVV5GZGQvF3a Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Thu, Mar 07, 2002 at 05:16:28PM +0200, Lauri Laupmaa wrote: > Hi >=20 > As I just read from http://www.pine.nl/advisories/pine-cert-20020301.txt >=20 > OpenSSH All versions between 2.0 and 3.0.2 have local root hole. >=20 > Is it fixed in -STABLE or is it issue at all? >=20 Please see the advisory that was just released (and/or subscribe to the freebsd-security-notifications list)... http://docs.freebsd.org/cgi/getmsg.cgi?fetch=3D0+0+current/freebsd-security= -notifications --=20 Chris D. Faulhaber - jedgar@fxp.org - jedgar@FreeBSD.org -------------------------------------------------------- FreeBSD: The Power To Serve - http://www.FreeBSD.org --Pd0ReVV5GZGQvF3a Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.6 (FreeBSD) Comment: FreeBSD: The Power To Serve iEYEARECAAYFAjyHhjkACgkQObaG4P6BelBntACeOfsW1OyQZn/RT23vzJWjnoK+ TxcAnRuwIPg8IFha+67ux3VNHry4Ulq/ =64F4 -----END PGP SIGNATURE----- --Pd0ReVV5GZGQvF3a-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-stable" in the body of the message