Displaying 1 result from an estimated 1 matches for "verifycancels".
2000 Jul 22
0
MDKSA-2000:023 inn update
...______________________________________________________________
Package name: inn
Date: July 22nd, 2000
Advisory ID: MDKSA-2000:023
Affected versions: 6.0, 6.1, 7.0, 7.1
________________________________________________________________________
Problem Description:
A vulnerability exists when verifycancels is enabled in
/etc/news/inn.conf. This vulnerability could be used to gain root
access on any system with inn installed. This new version also does
not install inews as setgid news or rnews as setuid root. Many other
security paranoia fixes have been made as well.
_________________________...