Slackware: quotacheck vulnerability
Summary
Here are the details from the Slackware 9.0 ChangeLog: Tue May 20 20:13:09 PDT 2003 patches/packages/sysvinit-2.84-i386-26.tgz: Use option M, not m, for quotacheck. Otherwise, the partition might be remounted losing flags like nosuid,nodev, noexec. Thanks to Jem Berkes for pointing this out. (* Security fix *) WHERE TO FIND THE NEW PACKAGES: Updated package for Slackware 9.0: MD5 SIGNATURES: Slackware 9.0 package: 966281dbd4e8cac23264021b9ad48f61 sysvinit-2.84-i386-26.tgz INSTALLATION INSTRUCTIONS: Upgrade using upgradepkg (as root): upgradepkg sysvinit-2.84-i386-26.tgz Then, you'll need to move the new version of rc.M into place, as rc.M is considered a config file and upgradepkg will not overwrite these by default: mv /etc/rc.d/rc.M.new /etc/rc.d/rc.M Slackware Linux Security Team slackware security@slackware.com
Where Find New Packages
MD5 Signatures
Installation Instructions