summaryrefslogtreecommitdiffstats
path: root/release
diff options
context:
space:
mode:
authorbmah <bmah@FreeBSD.org>2001-09-10 18:51:13 +0000
committerbmah <bmah@FreeBSD.org>2001-09-10 18:51:13 +0000
commitd0a67ff6c2155286a9a1c16887efc1d94710cd94 (patch)
tree1926e634a69de0742c7fdbbcf51faf46b7346a52 /release
parent808da37f935a07560f62024a704da4a833038680 (diff)
downloadFreeBSD-src-d0a67ff6c2155286a9a1c16887efc1d94710cd94.zip
FreeBSD-src-d0a67ff6c2155286a9a1c16887efc1d94710cd94.tar.gz
New release note: Non-root-owned binaries in standard system paths
now have the schg flag set.
Diffstat (limited to 'release')
-rw-r--r--release/doc/en_US.ISO8859-1/relnotes/article.sgml6
-rw-r--r--release/doc/en_US.ISO8859-1/relnotes/common/new.sgml6
2 files changed, 12 insertions, 0 deletions
diff --git a/release/doc/en_US.ISO8859-1/relnotes/article.sgml b/release/doc/en_US.ISO8859-1/relnotes/article.sgml
index bd54346..b26f190 100644
--- a/release/doc/en_US.ISO8859-1/relnotes/article.sgml
+++ b/release/doc/en_US.ISO8859-1/relnotes/article.sgml
@@ -1067,6 +1067,12 @@ hw.pcic.irq="0"</programlisting>
<para>A race condition in &man.rmuser.8; that briefly exposed a
world-readable <filename>/etc/master.passwd</filename> has been
fixed (see security advisory FreeBSD-SA-01:59). &merged;</para>
+
+ <para>All non-<username>root</username>-owned binaries in standard
+ system paths now have the <literal>schg</literal> flag set to
+ prevent exploit vectors when run by &man.cron.8;, by
+ <username>root</username>, or by a user other then the one owning
+ the binary.</para>
</sect2>
<sect2 id="userland">
<title>Userland Changes</title>
diff --git a/release/doc/en_US.ISO8859-1/relnotes/common/new.sgml b/release/doc/en_US.ISO8859-1/relnotes/common/new.sgml
index bd54346..b26f190 100644
--- a/release/doc/en_US.ISO8859-1/relnotes/common/new.sgml
+++ b/release/doc/en_US.ISO8859-1/relnotes/common/new.sgml
@@ -1067,6 +1067,12 @@ hw.pcic.irq="0"</programlisting>
<para>A race condition in &man.rmuser.8; that briefly exposed a
world-readable <filename>/etc/master.passwd</filename> has been
fixed (see security advisory FreeBSD-SA-01:59). &merged;</para>
+
+ <para>All non-<username>root</username>-owned binaries in standard
+ system paths now have the <literal>schg</literal> flag set to
+ prevent exploit vectors when run by &man.cron.8;, by
+ <username>root</username>, or by a user other then the one owning
+ the binary.</para>
</sect2>
<sect2 id="userland">
<title>Userland Changes</title>
OpenPOWER on IntegriCloud