From owner-freebsd-security@FreeBSD.ORG Sun Nov 20 23:18:35 2011 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id D2A7B106566B for ; Sun, 20 Nov 2011 23:18:35 +0000 (UTC) (envelope-from richardt@maths.tcd.ie) Received: from salmon.maths.tcd.ie (salmon.maths.tcd.ie [IPv6:2001:770:10:300::86e2:510b]) by mx1.freebsd.org (Postfix) with SMTP id 38F218FC0A for ; Sun, 20 Nov 2011 23:18:35 +0000 (UTC) Received: from bloch.maths.tcd.ie ([134.226.81.34] helo=bloch.maths.tcd.ie) by salmon.maths.tcd.ie with SMTP id ; 20 Nov 2011 23:18:33 +0000 (GMT) Date: Sun, 20 Nov 2011 23:18:33 +0000 From: "Richard M. Timoney" To: freebsd-security@freebsd.org Message-ID: <20111120231833.GA64769@bloch.maths.tcd.ie> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.5.21 (2010-09-15) Sender: richardt@maths.tcd.ie X-Mailman-Approved-At: Mon, 21 Nov 2011 00:19:22 +0000 Subject: FreeBSD Security Advisory FreeBSD-SA-11:05.unix [REVISED] X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 20 Nov 2011 23:18:35 -0000 As far as I can see the bug mentioned in the above advisory is not fully fixed. When logged in to a FreeBSD 8.2 machine with freshly updated /usr/src (world and kernel) [made on Wed Nov 16] via an XDMCP session, acroread says No protocol specified (acroread:2908): Gtk-WARNING **: cannot open display: pc200404.maths.tcd.ie:0.0 Logged in to the same host via ssh -Y , I have DISPLAY set to something like localhost:10.0 and acroread does launch. It also launches on the console X display. I would be happy with pointers as to a fix for this. Yours, Richard Timoney -- Richard M. Timoney (richardt@maths.tcd.ie) Tel. +353-1-896 1196 School of Mathematics, Trinity College, Dublin 2, Ireland WWW http://www.maths.tcd.ie/~richardt FAX +353-1-896 2282 From owner-freebsd-security@FreeBSD.ORG Mon Nov 21 03:16:43 2011 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 4DF23106564A for ; Mon, 21 Nov 2011 03:16:43 +0000 (UTC) (envelope-from jhellenthal@gmail.com) Received: from mail-ww0-f50.google.com (mail-ww0-f50.google.com [74.125.82.50]) by mx1.freebsd.org (Postfix) with ESMTP id C90E38FC0A for ; Mon, 21 Nov 2011 03:16:41 +0000 (UTC) Received: by wwg14 with SMTP id 14so8967854wwg.31 for ; Sun, 20 Nov 2011 19:16:40 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=sender:date:from:to:cc:subject:message-id:references:mime-version :content-type:content-disposition:in-reply-to; bh=wNp7UV3AFAN2Hl6nlSq0sq2qMcfikcL3pbNQzORaCag=; b=HCJkbM/lRRRDlkXqoigBPKvmD5U7BpJV7lmjCFXs6IHy07R1y86UTplVsHr3FotSXJ QocWBnT+nJIeE+ZPARbJc4udUNcGciYjLcgr+k0Uz14vU3QQVYO6sh6pbg3LZCFYpeBN tziiYXD7YsgWxslS+xJ0hWLfHrPK+Vqk9q34I= Received: by 10.216.135.22 with SMTP id t22mr1879719wei.69.1321845399632; Sun, 20 Nov 2011 19:16:39 -0800 (PST) Received: from DataIX.net (ppp-21.215.dialinfree.com. [209.172.21.215]) by mx.google.com with ESMTPS id m25sm11088957wbp.6.2011.11.20.19.16.36 (version=TLSv1/SSLv3 cipher=OTHER); Sun, 20 Nov 2011 19:16:38 -0800 (PST) Sender: Jason Hellenthal Received: from DataIX.net (localhost [127.0.0.1]) by DataIX.net (8.14.5/8.14.5) with ESMTP id pAL3GTCg006519 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Sun, 20 Nov 2011 22:16:29 -0500 (EST) (envelope-from jhell@DataIX.net) Received: (from jhell@localhost) by DataIX.net (8.14.5/8.14.5/Submit) id pAL3GTuR006518; Sun, 20 Nov 2011 22:16:29 -0500 (EST) (envelope-from jhell@DataIX.net) Date: Sun, 20 Nov 2011 22:16:29 -0500 From: Jason Hellenthal To: "Richard M. Timoney" Message-ID: <20111121031629.GA6330@DataIX.net> References: <20111120231833.GA64769@bloch.maths.tcd.ie> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20111120231833.GA64769@bloch.maths.tcd.ie> Cc: freebsd-security@freebsd.org Subject: Re: FreeBSD Security Advisory FreeBSD-SA-11:05.unix [REVISED] X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 21 Nov 2011 03:16:43 -0000 Sorry but this security advisory has nothing to do with your misconfiguration of your system. On Sun, Nov 20, 2011 at 11:18:33PM +0000, Richard M. Timoney wrote: > As far as I can see the bug mentioned in the above advisory is not fully > fixed. > > When logged in to a FreeBSD 8.2 machine with freshly updated /usr/src > (world and kernel) [made on Wed Nov 16] via an XDMCP session, acroread > says > > No protocol specified > > (acroread:2908): Gtk-WARNING **: cannot open display: > pc200404.maths.tcd.ie:0.0 > > Logged in to the same host via ssh -Y , I have DISPLAY set to something > like localhost:10.0 and acroread does launch. It also launches on the > console X display. > > I would be happy with pointers as to a fix for this. > > Yours, > > Richard Timoney > > -- > Richard M. Timoney > (richardt@maths.tcd.ie) Tel. +353-1-896 1196 > School of Mathematics, Trinity College, Dublin 2, Ireland > WWW http://www.maths.tcd.ie/~richardt FAX +353-1-896 2282 > _______________________________________________ > freebsd-security@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-security > To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org" From owner-freebsd-security@FreeBSD.ORG Mon Nov 21 08:05:57 2011 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 555691065677 for ; Mon, 21 Nov 2011 08:05:57 +0000 (UTC) (envelope-from des@des.no) Received: from smtp.des.no (smtp.des.no [194.63.250.102]) by mx1.freebsd.org (Postfix) with ESMTP id 160F38FC15 for ; Mon, 21 Nov 2011 08:05:57 +0000 (UTC) Received: from ds4.des.no (des.no [84.49.246.2]) by smtp.des.no (Postfix) with ESMTP id 250A26D09; Mon, 21 Nov 2011 08:05:56 +0000 (UTC) Received: by ds4.des.no (Postfix, from userid 1001) id CEE658364; Mon, 21 Nov 2011 09:05:55 +0100 (CET) From: =?utf-8?Q?Dag-Erling_Sm=C3=B8rgrav?= To: Jason Hellenthal References: <20111120231833.GA64769@bloch.maths.tcd.ie> <20111121031629.GA6330@DataIX.net> Date: Mon, 21 Nov 2011 09:05:55 +0100 In-Reply-To: <20111121031629.GA6330@DataIX.net> (Jason Hellenthal's message of "Sun, 20 Nov 2011 22:16:29 -0500") Message-ID: <86ehx1lx24.fsf@ds4.des.no> User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/23.3 (berkeley-unix) MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable Cc: freebsd-security@freebsd.org, "Richard M. Timoney" Subject: Re: FreeBSD Security Advisory FreeBSD-SA-11:05.unix [REVISED] X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 21 Nov 2011 08:05:57 -0000 Jason Hellenthal writes: > Sorry but this security advisory has nothing to do with your > misconfiguration of your system. Perhaps you should read the updated advisory before shooting Richard down in flames. DES --=20 Dag-Erling Sm=C3=B8rgrav - des@des.no