From owner-cvs-all@FreeBSD.ORG Mon Jan 14 23:36:31 2008 Return-Path: Delivered-To: cvs-all@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 2750116A4A1; Mon, 14 Jan 2008 23:36:31 +0000 (UTC) (envelope-from jhb@freebsd.org) Received: from speedfactory.net (mail.speedfactory.net [66.23.216.219]) by mx1.freebsd.org (Postfix) with ESMTP id 5801313C44B; Mon, 14 Jan 2008 23:36:30 +0000 (UTC) (envelope-from jhb@freebsd.org) Received: from server.baldwin.cx (unverified [66.23.211.162]) by speedfactory.net (SurgeMail 3.8q) with ESMTP id 228522216-1834499 for multiple; Mon, 14 Jan 2008 18:36:13 -0500 Received: from localhost.corp.yahoo.com (john@localhost [127.0.0.1]) (authenticated bits=0) by server.baldwin.cx (8.13.8/8.13.8) with ESMTP id m0ENaM8W051398; Mon, 14 Jan 2008 18:36:22 -0500 (EST) (envelope-from jhb@freebsd.org) From: John Baldwin To: Colin Percival Date: Mon, 14 Jan 2008 18:36:18 -0500 User-Agent: KMail/1.9.7 References: <200801142255.m0EMtK7x066176@repoman.freebsd.org> In-Reply-To: <200801142255.m0EMtK7x066176@repoman.freebsd.org> MIME-Version: 1.0 Content-Disposition: inline Message-Id: <200801141836.19291.jhb@freebsd.org> Content-Type: text/plain; charset="iso-8859-15" Content-Transfer-Encoding: 7bit X-Greylist: Sender succeeded SMTP AUTH authentication, not delayed by milter-greylist-2.0.2 (server.baldwin.cx [127.0.0.1]); Mon, 14 Jan 2008 18:36:22 -0500 (EST) X-Virus-Scanned: ClamAV 0.91.2/5483/Mon Jan 14 09:45:01 2008 on server.baldwin.cx X-Virus-Status: Clean X-Spam-Status: No, score=-4.4 required=4.2 tests=ALL_TRUSTED,AWL,BAYES_00 autolearn=ham version=3.1.3 X-Spam-Checker-Version: SpamAssassin 3.1.3 (2006-06-01) on server.baldwin.cx Cc: cvs-src@freebsd.org, src-committers@freebsd.org, cvs-all@freebsd.org Subject: Re: cvs commit: src/lib/libc/inet inet_network.c src/lib/libc/stdlib grantpt.c src/lib/libutil pty.c X-BeenThere: cvs-all@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: CVS commit messages for the entire tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 14 Jan 2008 23:36:31 -0000 On Monday 14 January 2008 05:55:20 pm Colin Percival wrote: > cperciva 2008-01-14 22:55:20 UTC > > FreeBSD src repository > > Modified files: > lib/libc/inet inet_network.c > lib/libc/stdlib grantpt.c > lib/libutil pty.c > Log: > Fix issues which allow snooping on ptys. [08:01] > > Fix an off-by-one error in inet_network(3). [08:02] > > Security: FreeBSD-SA-08:01.pty > Security: FreeBSD-SA-08:02.libc Did you mean to disable support for pts(4) in ptsname(3) in HEAD? Note that pts(4) isn't disabled in any of the other pty-related functions in HEAD (e.g. posix_openpt(3)). -- John Baldwin