Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 30 Jan 2012 10:56:44 -0500
From:      Mike Tancsa <mike@sentex.net>
To:        wxs@freebsd.org, ports@freebsd.org
Subject:   Sudo security advisory
Message-ID:  <4F26BDBC.5090003@sentex.net>

next in thread | raw e-mail | index | archive | help
Hi,
	

http://www.gratisoft.us/sudo/alerts/sudo_debug.html

>From the advisory,

Successful exploitation of the bug will allow a user to run arbitrary
commands as root.
Exploitation of the bug does *not* require that the attacker be listed
in the sudoers file. As such, we strongly suggest that affected sites
upgrade from affected sudo versions as soon as possible.

	---Mike



-- 
-------------------
Mike Tancsa, tel +1 519 651 3400
Sentex Communications, mike@sentex.net
Providing Internet services since 1994 www.sentex.net
Cambridge, Ontario Canada   http://www.tancsa.com/



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4F26BDBC.5090003>