OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: ncurses buffer overflows (fwd)
From: Warner Losh (impvillage.org)
Date: Tue Oct 10 2000 - 22:10:48 CDT


In message <Pine.BSF.4.21.0010102108020.4661-100000achilles.silby.com> Mike Silbersack writes:
: Is the patch just to not read .terminfo from the current directory when
: executing setuid+setgid apps? (Just checking if it's the same as the
: patch that openbsd has applied.)

There are several things that were fixed in this round of patches. I
think that this is one of them, but I have it on my list of things to
check once Peter imports the new ncurses.

Warner

To Unsubscribe: send mail to majordomoFreeBSD.org
with "unsubscribe freebsd-security" in the body of the message