Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 2 Aug 1997 14:40:38 +0300 (EET DST)
From:      Ruslan Ermilov <ru@ucb.crimea.ua>
To:        jkh@time.cdrom.com
Cc:        freebsd-bugs@freebsd.org
Subject:   CERT Advisory CA-97.17 - Vulnerability in suidperl (sperl) question...
Message-ID:  <199708021140.OAA07494@relay.ucb.crimea.ua>

next in thread | raw e-mail | index | archive | help
Hi, Jordan
and other readers!

As I know from my up-to-date CVS tree, FreeBSD Project didn't anything to solve
the problem described in CERT Advisory CA-97.17 - Vulnerability in suidperl.

I think you should at least make /usr/bin/suidperl not setuid in the
-stable and -current.

What is the reason why you can't upgrade perl version or make suidperl
not setuid?

Thanks in advance,
-- 
Ruslan A. Ermilov	System Administrator
ru@ucb.crimea.ua	United Commercial Bank
+380-652-247 647	Simferopol, Crimea



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199708021140.OAA07494>