From 221137ced78d3863b4003fa3ce20c768837147a1 Mon Sep 17 00:00:00 2001 From: "Bruce A. Mah" Date: Wed, 11 Jul 2001 01:20:54 +0000 Subject: [PATCH] Add a note on FreeBSD-SA-01:42 to Web version of 4.3-RELEASE errata. --- en/releases/4.3R/errata.sgml | 10 ++++++++-- 1 file changed, 8 insertions(+), 2 deletions(-) diff --git a/en/releases/4.3R/errata.sgml b/en/releases/4.3R/errata.sgml index 71b2523932..b2d68d6f76 100644 --- a/en/releases/4.3R/errata.sgml +++ b/en/releases/4.3R/errata.sgml @@ -1,10 +1,10 @@ - + %includes; ]> - + &header; @@ -45,6 +45,12 @@ recursively traversing a filesystem) could allow a program to operate on files outside the intended directory hierarchy. This bug, as well as a fix, is described in security advisory FreeBSD-SA-01:40. +A flaw allowed some signal handlers to remain in effect in a child +process after being exec-ed from its parent. This allowed an attacker +to execute arbitrary code in the context of a setuid binary. More +details, as well as a fix, are described in security advisory +FreeBSD-SA-01:42. + ---- System Update Information: The release note entry for the ESS Maestro-3/Allegro sound driver gave