OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Multiple Local Vulnerabilities in Helix Gnome Installer
From: Olaf Kirch (okirCALDERA.DE)
Date: Tue Aug 22 2000 - 03:42:35 CDT


On Sat, Aug 19, 2000 at 04:29:16PM +0100, Alan Cox wrote:
> 1. Several of the gdmify functions are vulnerable to attack because
> they use system and /tmp in unsafe manners
>
> > SuSE and Caldera
[snip]

Just to make sure there's no confusion about this issue; Caldera
doesn't ship any Helix code with its products. This issue will
only affect you if you have downloaded the installer from the
Helix FTP site.

Olaf Kirch

--
Olaf Kirch         |  --- o --- Nous sommes du soleil we love when we play
okirmonad.swb.de  |    / | \   sol.dhoop.naytheet.ah kin.ir.samse.qurax
okircaldera.de    +-------------------- Why Not?! -----------------------
         UNIX, n.: Spanish manufacturer of fire extinguishers.