[dranch at trinnet.net: [yh] Linux 2.4.6 has a semi-serious umask bug..]

Jesse Tie Ten Quee highos at highos.com
Fri Jul 20 15:26:15 PDT 2001


On Thu, Jul 19, 2001 at 08:33:40PM -0600, Jesse Tie Ten Quee wrote:
> A vulnerability was found in the 2.4.x Linux kernels that causes
> the kernel to not properly set the UMASK. This could result in the
> creation of certain files with world-writable permissions.
> This vulnerability has been confirmed and will be fixed in the
> 2.4.7 kernel.

And on that mattter, 2.4.7 is out!

Jesse Tie Ten Quee - highos at highos dot com
Unsubscribe: send email to lfs-security-request at linuxfromscratch.org
and put unsubscribe in the subject header of the message

More information about the lfs-security mailing list