Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 4 Jan 1999 09:37:24 -0500 (EST)
From:      Matt Behrens <matt@megaweapon.zigg.com>
To:        ports@FreeBSD.ORG
Subject:   Quick check on x11-toolkits/Xaw3d vulnerability
Message-ID:  <Pine.BSF.4.05.9901040935340.10073-100000@megaweapon.zigg.com>

next in thread | raw e-mail | index | archive | help
Eariler this year, if everyone recalls, vulnerabilities were found
in the Xaw libraries that could give root shells with a simple run
of xterm.

I have recently begun using Xaw3d (1.5, from the ports collection)
and there *seems* to be no mention either in the port, the patches,
or the source itself of any vulnerabilities or fixes.  Yet all Xaw
advisories suggest that Xaw3d "may" be vulnerable.

Was this conciously upgraded to incorporate any fixes?

- Matt "Zigg" Behrens <matt@zigg.com>
  Network Administrator, zigg.com <http://www.zigg.com/>;
  Engineer, Nameless IRC Network <http://www.nameless.net/>;


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-ports" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.05.9901040935340.10073-100000>