HomeFreeBSD

Mark BROKEN due to buffer overflow yielding root to members of wheel. There's

Description

Mark BROKEN due to buffer overflow yielding root to members of wheel. There's
also an overflow with ospf_monitor which may result in being able to corrupt
routing traffic (which I've reported to the developers)

According to the docs, gdc shouldn't be installed root:wheel and setuid,
but put into its own gdmaint group. This still doesn't prevent people in
that group from gaining root, though.

Submitted by: Brock Tellier <btellier@usa.net> (gdc bug)

Details

Provenance
krisAuthored on
Parents
rP23538: Mark BROKEN due to buffer overflow yielding setuid uucp
Branches
Unknown
Tags
Unknown

Event Timeline