OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: suidperl exploit
From: Kris Kennaway (krisFreeBSD.org)
Date: Thu Aug 10 2000 - 16:36:25 CDT


On Thu, 10 Aug 2000, Vladimir Mencl, MK, susSED wrote:

> I just came over the suidperl + mail vulnerability in Linux, and I was
> wondering whether it would work in FreeBSD.

I believe FreeBSD to be safe from this particular misfeature - FreeBSD's
mail(1) program lives in another location, as already noted, and I don't
even know if it supports the required features to exploit it.

Kris

--
In God we Trust -- all others must submit an X.509 certificate.
    -- Charles Forsythe <forsythealum.mit.edu>

To Unsubscribe: send mail to majordomoFreeBSD.org with "unsubscribe freebsd-security" in the body of the message