SECURITY BUG IN INTERACTIVE UNIX SYSV386

Paul de Bra debra at wsinfo11.info.win.tue.nl
Thu Feb 14 00:22:43 AEST 1991


In article <1991Feb11.184130.11321 at jwt.UUCP> john at jwt.UUCP (John Temples) writes:
>In article <KR3NBQQ at dobag.in-berlin.de> lumpi at dobag.in-berlin.de (Joern Lubkoll) writes:
>>it seems that your very cute interactive unix System has a nice bug !
>Yikes.  This also works on ESIX-D without a coprocessor, and on ISC 2.0.2
>*with* a coprocessor.  It failed on Microport 2.2 with a coprocessor.
>...

This (and other postings) suggests that the problem would be found
in the more generic sVr3.2 from AT&T.
However, I tried AT&T sVr3.2 (version 2.1) on a machine (with coprocessor)
and got a memory fault.
So it looks like somehow the same bug ended up in ESIX and ISC
(and AT&T sVr3.1?) but not in AT&T sVr3.2.1 or SCO.

Paul.
(debra at research.att.com, debra at win.tue.nl)



More information about the Comp.unix.sysv386 mailing list