Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

BSD exec() Race Condition Vulnerability

Solution:
NetBSD has released patches. It is believed that other BSD operating systems may be vulnerable, however this has not been confirmed. There are no patches for these systems yet. This record will be updated if and when they become available.

It is believed that version 1.3 is vulnerable, however it is not confirmed. Users of those kernel versions are advised to upgrade to the latest version.

NetBSD 1.4.x and 1.5.x users can patch their kernel via CVS or apply the patches listed below:

FreeBSD has released patches.

A patch is available for OpenBSD 3.0 (older versions may still be vulnerable, systems must be upgraded to 3.0 before the patch can be applied).


OpenBSD OpenBSD 3.0

NetBSD NetBSD 1.4

NetBSD NetBSD 1.4.1

NetBSD NetBSD 1.4.2

NetBSD NetBSD 1.4.3

NetBSD NetBSD 1.5

NetBSD NetBSD 1.5.1

NetBSD NetBSD 1.5.2

FreeBSD FreeBSD 4.3 -RELEASE

FreeBSD FreeBSD 4.3 -RELENG

FreeBSD FreeBSD 4.4

FreeBSD FreeBSD 4.4 -STABLE

FreeBSD FreeBSD 4.4 -RELENG







 

Privacy Statement
Copyright 2009, SecurityFocus