Bash 2.05 Problems

Thomas M. Beaudry k8la at arrl.net
Sat Aug 11 12:23:19 PDT 2001


I brought this up once before but don't remember if I got an
answer so I'll ask again.

Why doesn't LFS apply the patches to bash-2.05?  Besides the
obviously desirable fixes to bug buddy and file descriptor
handling, they fix a number of buffer overruns.  I don't know
if they could be a security risk in bash but they have been
exploited in other programs to gain root access.

-- 
Thomas M. Beaudry K8LA / YS1ZTM
k8la at arrl.net
-- 
Unsubscribe: send email to lfs-security-request at linuxfromscratch.org
and put unsubscribe in the subject header of the message



More information about the lfs-security mailing list