*BSD News Article 88578


Return to BSD News archive

Path: euryale.cc.adfa.oz.au!newshost.carno.net.au!harbinger.cc.monash.edu.au!news.rmit.EDU.AU!goanna.cs.rmit.edu.au!news.apana.org.au!cantor.edge.net.au!news.mira.net.au!news.netspace.net.au!news.mel.connect.com.au!munnari.OZ.AU!spool.mu.edu!howland.erols.net!news.bbnplanet.com!cam-news-hub1.bbnplanet.com!news.maxwell.syr.edu!newstand.syr.edu!news.corpcomm.net!news
From: Zach Heilig <zach@blizzard.gaffaneys.com>
Newsgroups: comp.os.linux.advocacy,comp.unix.bsd.misc,comp.os.linux.misc
Subject: Re: Linux vs BSD
Date: 07 Feb 1997 10:14:41 -0600
Organization: Corporate Communications
Lines: 19
Sender: zach@murkwood.gaffaneys.com
Message-ID: <87iv44sidq.fsf@murkwood.gaffaneys.com>
References: <32DFFEAB.7704@usa.net> <KETIL-ytqiv47v56j.fsf@pinro.imr.no>
	<5daavp$8lp@panix2.panix.com> <KETIL-ytqbu9yfheu.fsf@imr.no>
	<5dfcpj$t45@agate.berkeley.edu>
NNTP-Posting-Host: dialup3.gaffaneys.com
Mime-Version: 1.0 (generated by tm-edit 7.89)
Content-Type: text/plain; charset=US-ASCII
X-Newsreader: Gnus v5.3/Emacs 19.34
Xref: euryale.cc.adfa.oz.au comp.os.linux.advocacy:82715 comp.unix.bsd.misc:2338 comp.os.linux.misc:156674

nickkral@cal.alumni.berkeley.edu (Nick Kralevich) writes:

> I'm suprised that no one has mentioned that all current FreeBSD releases
> have a bug that allows ANY suid program to be used to gain root access.

> Or the fact that FreeBSD security holes aren't even posted to the
> FreeBSD newsgroup.  

It is, however, all over the FreeBSD mailing lists.  The mailing lists
have probably 20x the volume of the FreeBSD related newsgroups.

I also believe there is a fix already available.  Check the either the
ftp site for 2.1.7, or if that hasn't gotten there yet, check the
mailing list archives (accessible through www.freebsd.org).

-- 
Zach Heilig (zach@blizzard.gaffaneys.com) | ALL unsolicited commercial email
Support bacteria -- it's the only         | is unwelcome.  I avoid dealing
form of culture some people have!         | with companies that email ads.