From owner-cvs-all@FreeBSD.ORG Wed Dec 15 16:37:45 2004 Return-Path: Delivered-To: cvs-all@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 16F0316A4CE; Wed, 15 Dec 2004 16:37:45 +0000 (GMT) Received: from repoman.freebsd.org (repoman.freebsd.org [216.136.204.115]) by mx1.FreeBSD.org (Postfix) with ESMTP id E100F43D53; Wed, 15 Dec 2004 16:37:44 +0000 (GMT) (envelope-from petef@FreeBSD.org) Received: from repoman.freebsd.org (localhost [127.0.0.1]) by repoman.freebsd.org (8.13.1/8.13.1) with ESMTP id iBFGbiOM055802; Wed, 15 Dec 2004 16:37:44 GMT (envelope-from petef@repoman.freebsd.org) Received: (from petef@localhost) by repoman.freebsd.org (8.13.1/8.13.1/Submit) id iBFGbiAv055801; Wed, 15 Dec 2004 16:37:44 GMT (envelope-from petef) Message-Id: <200412151637.iBFGbiAv055801@repoman.freebsd.org> From: Pete Fritchman Date: Wed, 15 Dec 2004 16:37:44 +0000 (UTC) To: ports-committers@FreeBSD.org, cvs-ports@FreeBSD.org, cvs-all@FreeBSD.org X-FreeBSD-CVS-Branch: HEAD Subject: cvs commit: ports/devel/cscope Makefile ports/devel/cscope/files patch-src::main.c X-BeenThere: cvs-all@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: CVS commit messages for the entire tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 15 Dec 2004 16:37:45 -0000 petef 2004-12-15 16:37:44 UTC FreeBSD ports repository Modified files: devel/cscope Makefile Added files: devel/cscope/files patch-src::main.c Log: Fix CAN-2004-0996 vulnerability & bump PORTREVISION: main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack. PR: 75104 Submitted by: Matthias Andree Revision Changes Path 1.23 +1 -0 ports/devel/cscope/Makefile 1.1 +52 -0 ports/devel/cscope/files/patch-src::main.c (new)