[21491] in bugtraq
Re: Re[2]: FreeBSD 4.3 local root, yet Linux and *BSD much better
daemon@ATHENA.MIT.EDU (Lucian Hudin)
Sun Jul 15 23:39:12 2001
Date: Thu, 12 Jul 2001 02:51:36 +0300 (EEST)
From: Lucian Hudin <luci@warp.transart.ro>
To: Alexandr Dubovikov <baron@uic-in.net>
Cc: Przemyslaw Frasunek <venglin@freebsd.lublin.pl>,
Georgi Guninski <guninski@guninski.com>, <bugtraq@securityfocus.com>
In-Reply-To: <26523519491.20010711104139@uic-in.net>
Message-ID: <Pine.LNX.4.30.0107120247420.32107-100000@warp.transart.ro>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
> >> FreeBSD 4.3 local root, yet Linux and *BSD much better than Windows
>
> PF> This problem was already reported to FreeBSD Security Officer about two
> PF> months ago, but it was totally ignored.
>
> This problem has fixed and the exploit didn't work for last
> 4.3-RELEASE FreeBSD.
>
nope, it works like a charm on the 4.3-REL, maybe you forgot to
"cp /bin/sh /tmp/sh" first, but it works.
ftp.freebsd.org has:
$ less FreeBSD-SA-01:42.signal.asc
This is a place holder until the real advisory is issued. One should not
reply on anything contained here.
FreeBSD Security Team
Regards,
LucySoft