buffer overflow in unix.c (was Re: Various problem with xconq)

Jim Kingdon kingdon@panix.com
Fri Feb 1 14:37:00 GMT 2002


> >Last point, there is a major security issue in the parameter
> >handeling. That was reported on bugtraq more than one year ago, and a
> >patch were contributed a short while ago. See
> >http://bugs.debian.org/80576 for more details.
> 
> This patch seems straightforward. I will see to it that it goes into
> the CVS sources.

Ha!

You were too slow, Hans ;-).

I checked it in but the patch had missed one case - they forgot to add
one for the ".".  So I corrected that in the version I checked in.



More information about the Xconq7 mailing list