Date: Mon, 11 Dec 2000 14:46:45 -0800 From: Greg KH <greg@WIREX.COM> Subject: Immunix OS Security update for ed To: BUGTRAQ@SECURITYFOCUS.COM --eAbsdosE1cNLO4uF Content-Type: text/plain; charset=us-ascii Content-Disposition: inline ----------------------------------------------------------------------- Immunix OS Security Advisory Packages updated: ed Effected products: Immunix OS 6.2, Immunix OS 7.0-beta Bugs Fixed: immunix/1304 Date: December 11, 2000 Advisory ID: IMNX-2000-70-015-01 Author: Greg Kroah-Hartman <greg@wirex.com> ----------------------------------------------------------------------- Description: Alan Cox recently found a problem in the 'ed' editor that causes it to create temporary files in an unsafe fashion. Since 'ed' is the "one true editor" according to our lead sysadmin Will, packages have been created and released for both Immunix 6.2 and 7.0 beta. Package names and locations: Precompiled binary package for Immunix 6.2 is available at: http://www.immunix.org/ImmunixOS/6.2/updates/RPMS/ed-0.2-19.6x_StackGuard.i386.rpm Source package for Immunix 6.2 is available at: http://www.immunix.org/ImmunixOS/6.2/updates/SRPMS/ed-0.2-19.6x_StackGuard.src.rpm Precompiled binary package for Immunix 7.0 beta is available at: http://www.immunix.org/ImmunixOS/7.0-beta/updates/RPMS/ed-0.2-19_StackGuard.i386.rpm Source package for Immunix 7.0 beta is available at: http://www.immunix.org/ImmunixOS/7.0-beta/updates/SRPMS/ed-0.2-19_StackGuard.src.rpm md5sums of the packages: 99e9e6af4d17fe6e5df1a6a73f93b59b 6.2/updates/RPMS/ed-0.2-19.6x_StackGuard.i386.rpm dc5052330cf82344552b0390f1772738 6.2/updates/SRPMS/ed-0.2-19.6x_StackGuard.src.rpm ae64d6025e6873bba7ef866b53cdffe0 7.0-beta/updates/RPMS/ed-0.2-19_StackGuard.i386.rpm 12b9c85e3a9b16f76b48f5c07f0f5eec 7.0-beta/updates/SRPMS/ed-0.2-19_StackGuard.src.rpm Online version of all Immunix 6.2 updates and advisories: http://www.immunix.org/ImmunixOS/6.2/updates/ Online version of all Immunix 7.0-beta updates and advisories: http://www.immunix.org/ImmunixOS/7.0-beta/updates/ --eAbsdosE1cNLO4uF Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.4 (GNU/Linux) Comment: For info see http://www.gnupg.org iD8DBQE6NVlVAl5ylTeuKpURAtBuAJ45TDtYHaZHGsMYKI3AQTfbDzy3SwCgrW7W 3UMqAfipc5arcJ7CwLiqsI8«4o -----END PGP SIGNATURE----- --eAbsdosE1cNLO4uF--