[15376] in bugtraq
Re: Splitvt exploit
daemon@ATHENA.MIT.EDU (Kris Kennaway)
Fri Jun 16 14:53:30 2000
Mime-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Message-Id: <Pine.BSF.4.21.0006151351221.50020-100000@freefall.freebsd.org>
Date: Thu, 15 Jun 2000 13:52:06 -0700
Reply-To: Kris Kennaway <kris@FREEBSD.ORG>
From: Kris Kennaway <kris@FREEBSD.ORG>
X-To: syzop <syz@DDS.NL>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To: <3947DBCB.5E24DC5D@dds.nl>
On Wed, 14 Jun 2000, syzop wrote:
> Problem
> =======
> Splitvt 1.6.3 contains a buffer overflow, if you have installed splitvt suid root (like
> Debian/Redhat/etc, btw not slackware) you should upgrade to 1.6.4.
FreeBSD ports doesn't install this setuid.
Kris
--
In God we Trust -- all others must submit an X.509 certificate.
-- Charles Forsythe <forsythe@alum.mit.edu>