OpenBSD Information for VU#960877
Red Hat linux restore uses insecure environment variables allowing root compromise
- Vendor Information Help Date Notified: 16 Jul 2001
- Statement Date:
- Date Updated: 23 Jul 2001
Our dump & restore have not been setuid or setgid for a very long time. We have also fixed numerous other bugs in them.
The vendor has not provided us with any further information regarding this vulnerability.
The CERT/CC has no additional comments at this time.