Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 25 Feb 2001 23:17:15 +0100
From:      Gary Jennejohn <garyj@peedub.muc.de>
To:        Kris Kennaway <kris@obsecurity.org>
Cc:        cvs-all@FreeBSD.org, cvs-committers@FreeBSD.org
Subject:   Re: cvs commit: src/usr.sbin/pccard/pccardd util.c 
Message-ID:  <200102252217.f1PMHFu01759@peedub.muc.de>
In-Reply-To: Your message of "Sun, 25 Feb 2001 13:14:35 PST." <20010225131435.A39340@mollari.cthul.hu> 

next in thread | previous in thread | raw e-mail | index | archive | help
Kris Kennaway writes:
> 
> On Sun, Feb 25, 2001 at 11:52:43AM -0800, Gary Jennejohn wrote:
> > gj          2001/02/25 11:52:43 PST
> >=20
> >   Modified files:
> >     usr.sbin/pccard/pccardd util.c=20
> >   Log:
> >   Use vsnprintf in logmsg() to avoid overflowing the array on the stack.
> >   The problem was noted with an older model 3Com 3C589 which seems
> >   to return more than 256 bytes of data.
> 
> Hehe..security vulnerability by malicious pccard? :-)
> 
> Kris
> 

no, malicious core dumps :)

---
Gary Jennejohn / garyj@muc.de gj@freebsd.org

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200102252217.f1PMHFu01759>