Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 1 Apr 2016 11:06:59 -0700
From:      Bryan Drewery <bdrewery@FreeBSD.org>
To:        Sean Bruno <sbruno@FreeBSD.org>, src-committers@freebsd.org, svn-src-all@freebsd.org, svn-src-head@freebsd.org
Subject:   Re: svn commit: r297488 - head/sys/kern
Message-ID:  <56FEB8C3.1080000@FreeBSD.org>
In-Reply-To: <201604011616.u31GGQe2010425@repo.freebsd.org>
References:  <201604011616.u31GGQe2010425@repo.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On 4/1/16 9:16 AM, Sean Bruno wrote:
> Author: sbruno
> Date: Fri Apr  1 16:16:26 2016
> New Revision: 297488
> URL: https://svnweb.freebsd.org/changeset/base/297488
> 
> Log:
>   Repair a overflow condition where a user could submit a string that was
>   not getting a proper bounds check.
>   
>   Thanks to CTurt for pointing at this with a big red blinking neon sign.
>   
>   PR:		206761

I love this bit in the analysis: "Unfortunately, the sysctl node,
`kern.binmisc.add` is only accessible as root."

-- 
Regards,
Bryan Drewery



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?56FEB8C3.1080000>