From 169b87f618fd96fe594215180f5644f34359444b Mon Sep 17 00:00:00 2001
From: "Bruce A. Mah" $FreeBSD:
src/release/doc/en_US.ISO8859-1/errata/article.sgml,v
- 1.1.2.40 2002/01/05 06:24:07 bmah Exp $
+ 1.1.2.42 2002/01/18 16:44:07 bmah Exp $
@@ -91,13 +91,13 @@
"REFENTRYTITLE">login.conf(5)) was
disabled due to incorrect merging of local and global
settings. This problem has been fixed in FreeBSD
- 4.5-PRERELEASE.
A local root vulnerability in UUCP was corrected before the release of FreeBSD 4.4-RELEASE and documented in security advisory FreeBSD-SA-01:62. The release notes mentioned the correction, but not the security advisory, which was issued after the release date of 4.4-RELEASE.
@@ -109,7 +109,7 @@ class="LITERAL">UseLogin no. For more information, including workarounds and bugfixes, see security advisory FreeBSD-SA-01:63.The use of an insecure temporary directory by FreeBSD-SA-02:01.
A race condition in /etc/master.passwd, has been eliminated. For more information, including workarounds and bugfixes, see security advisory FreeBSD-SA-02:02.
+ +A bug in + k5su(8) could have + allowed a process that had given up superuser privileges to + regain them. This bug has been fixed. (See security + advisory FreeBSD-SA-02:07.)