|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
Subject: Re: Multiple Local Vulnerabilities in Helix Gnome Installer
From: Olaf Kirch (okir
CALDERA.DE)Date: Tue Aug 22 2000 - 03:42:35 CDT
- Next message: Chiaki Ishikawa: "Re: FW: MacroMedia Flash/Shockwave plug-in on linux : memcpy overrun problem."
- Previous message: Jeffrey W. Baker: "Accounts easily compromised on Critical Path web mail service, CP does not respond after 30 days."
- In reply to: Alan Cox: "Multiple Local Vulnerabilities in Helix Gnome Installer"
- Reply: Olaf Kirch: "Re: Multiple Local Vulnerabilities in Helix Gnome Installer"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
On Sat, Aug 19, 2000 at 04:29:16PM +0100, Alan Cox wrote:
> 1. Several of the gdmify functions are vulnerable to attack because
> they use system and /tmp in unsafe manners
>
> > SuSE and Caldera
[snip]
Just to make sure there's no confusion about this issue; Caldera
doesn't ship any Helix code with its products. This issue will
only affect you if you have downloaded the installer from the
Helix FTP site.
Olaf Kirch
-- Olaf Kirch | --- o --- Nous sommes du soleil we love when we play okirmonad.swb.de | / | \ sol.dhoop.naytheet.ah kin.ir.samse.qurax okir
caldera.de +-------------------- Why Not?! ----------------------- UNIX, n.: Spanish manufacturer of fire extinguishers.
- Next message: Chiaki Ishikawa: "Re: FW: MacroMedia Flash/Shockwave plug-in on linux : memcpy overrun problem."
- Previous message: Jeffrey W. Baker: "Accounts easily compromised on Critical Path web mail service, CP does not respond after 30 days."
- In reply to: Alan Cox: "Multiple Local Vulnerabilities in Helix Gnome Installer"
- Reply: Olaf Kirch: "Re: Multiple Local Vulnerabilities in Helix Gnome Installer"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]