info
discussion
exploit
solution
references
Multiple Vendor exec C Library Standard I/O File Descriptor Race Condition Vulnerability
Solution:
Patches are available:
OpenBSD OpenBSD 3.0
OpenBSD 021_fdalloc2.patch
ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.0/common/021_fdalloc2.patc h
OpenBSD OpenBSD 3.1
OpenBSD 003_fdalloc2.patch
ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.1/common/003_fdalloc2.patc h
OpenBSD OpenBSD 2.9
OpenBSD 026_fdalloc2.patch
ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.9/common/026_fdalloc2.patc h
SCO Unixware 7.1.1
SCO erg712059.711.pkg.Z
ftp://ftp.sco.com/pub/updates/OpenUNIX/CSSA-2002-SCO.43/erg712059.711. pkg.Z
Caldera OpenUnix 8.0
SCO erg712059.ou8.pkg.Z
ftp://ftp.sco.com/pub/updates/OpenUNIX/CSSA-2002-SCO.43/erg712059.ou8. pkg.Z
Privacy Statement
Copyright 2010, SecurityFocus