On Apr 22, Enrique Zanardi wrote > On 21 Apr 1997, Darren/Torin/Who Ever... wrote: > > > I've uploaded perl 5.003.07-10 to Master's Incoming. This fixes the > > suidperl exploit where you can gain a suid root shell. > > > > Guy, please move this into frozen and unstable as soon as you can. > > > > This version of suid perl fixes the current buffer overrun problem. > > We (the perl5-porters team) are hunting down and exterminating all > > possible buffer overruns before 5.004 is released. > > > > This is also available at ftp://ftp.daft.com/pub/debian/perl* > > > > This deserves a message to linux-security and linux-alert, doesn't it? And IMHO, this also deserves another Debian 1.2.x release. (i.e. it should go straight into stable.)
Attachment:
pgp33fnQ1lGup.pgp
Description: PGP signature