|author||Warner Losh <imp@FreeBSD.org>||2002-01-27 07:16:58 +0000|
|committer||Warner Losh <imp@FreeBSD.org>||2002-01-27 07:16:58 +0000|
Add p23 and p24 for the k5su and exec problems. I'd overlooked these
Notes: svn path=/releng/4.3/; revision=89851
1 files changed, 7 insertions, 0 deletions
@@ -16,6 +16,13 @@ minimal number of processes, if possible, for that patch. For those
updates that don't have an advisory, or to be safe, you can do a full
build and install as described in the COMMON ITEMS section.
+20020123: p24 FreeBSD-SA-02:08.exec.asc
+ There's a small window in exec where one could debug a setuid
+ program and obtain elevated priviledges. This was corrected.
+20020123: p23 FreeBSD-SA-02:07.k5su
+ k5su fixes.
20011221 p22 FreeBSD-SA-02:02:pw.asc
A bug was fixed wherein the pw(8) command created a short-lived
but world-readable copy of /etc/master.passwd.