From owner-cvs-libexec Mon Aug 15 12:45:12 1994 Return-Path: cvs-libexec-owner Received: (from root@localhost) by freefall.cdrom.com (8.6.8/8.6.6) id MAA19877 for cvs-libexec-outgoing; Mon, 15 Aug 1994 12:45:12 -0700 Received: (from guido@localhost) by freefall.cdrom.com (8.6.8/8.6.6) id VAA19854; Mon, 15 Aug 1994 21:44:52 +0200 Date: Mon, 15 Aug 1994 21:44:52 +0200 From: Guido van Rooij Message-Id: <199408151944.VAA19854@freefall.cdrom.com> To: ache, adam, alm, ats, bde, csgr, cvs-libexec, davidg, dyson, guido, hsu, jkh, jvh, karl, martin, nate, paul, phk, proven, pst, rgrimes, rich, sean, sef, smace, sos, wollman Subject: cvs commit: src/libexec/rlogind rlogind.c Sender: cvs-libexec-owner@freefall.cdrom.com Precedence: bulk guido 94/08/15 21:44:51 Modified: libexec/rlogind rlogind.c Log: Plug security hole that was already fixed in 1.1. It prevents user from specifying their hostname when rlogin()-ing in (using rlogin -f-h) Reviewed by: Submitted by: