Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 04 Jun 2002 14:38:41 -0400
From:      Mike Tancsa <mike@sentex.net>
To:        Gregory Neil Shapiro <gshapiro@FreeBSD.ORG>, freebsd-security@FreeBSD.ORG
Cc:        mbr@FreeBSD.ORG
Subject:   Similar locking bugs (was Re: Security fixes in Sendmail 8.12.4)
Message-ID:  <5.1.0.14.0.20020604143542.03aafa88@marble.sentex.ca>
In-Reply-To: <15612.65032.569720.821128@horsey.gshapiro.net>
References:  <15612.64901.18897.489322@horsey.gshapiro.net> <20020604195354.M27608@wu-wien.ac.at> <15612.64901.18897.489322@horsey.gshapiro.net>

next in thread | previous in thread | raw e-mail | index | archive | help
At 10:51 AM 04/06/2002 -0700, Gregory Neil Shapiro wrote:
>I should note however that sendmail is one of many programs that can be
>DoS'ed via locking.  I'd encourage the security officer to sweep through
>the tree looking for this type of problem.

Apache and FrontPage seems to have this problem as well.

As a non privileged user, just vi /usr/local/etc/apache/httpd.conf

While this is the case, none of the frontpage users are able to 
publish/save files to their respective sites.

         ---Mike


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?5.1.0.14.0.20020604143542.03aafa88>