Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 5 Apr 2001 22:47:07 +0200
From:      Jesper Skriver <jesper@skriver.dk>
To:        Poul-Henning Kamp <phk@FreeBSD.org>
Cc:        cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   Re: cvs commit: src/contrib/ntp/ntpd ntp_control.c
Message-ID:  <20010405224707.A81542@skriver.dk>
In-Reply-To: <200104042307.f34N7Mv79463@freefall.freebsd.org>; from phk@FreeBSD.org on Wed, Apr 04, 2001 at 04:07:22PM -0700
References:  <200104042307.f34N7Mv79463@freefall.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On Wed, Apr 04, 2001 at 04:07:22PM -0700, Poul-Henning Kamp wrote:
> phk         2001/04/04 16:07:22 PDT
> 
>   Modified files:
>     contrib/ntp/ntpd     ntp_control.c 
>   Log:
>   Fix a potential ROOT-exploit in NTPD.
>   
>   PR:		26358
>   Reviewed by:	dima
>   
>   Revision  Changes    Path
>   1.2       +21 -1     src/contrib/ntp/ntpd/ntp_control.c

ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2001-004.txt.asc

Say: "Jason Thorpe for changes to not overrun the end of the static buffer"
in regard to the patch applied to FreeBSD, are they right, or ?

/Jesper

-- 
Jesper Skriver, jesper(at)skriver(dot)dk  -  CCIE #5456
Work:    Network manager   @ AS3292 (Tele Danmark DataNetworks)
Private: FreeBSD committer @ AS2109 (A much smaller network ;-)

One Unix to rule them all, One Resolver to find them,
One IP to bring them all and in the zone to bind them.

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20010405224707.A81542>