Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 25 Jul 1996 01:23:13 -0400 (EDT)
From:      Brian Mitchell <brian@saturn.net>
To:        Gary Palmer <gpalmer@FreeBSD.org>
Cc:        Victor Rotanov <vitjok@fasts.lv>, freebsd-security@FreeBSD.org
Subject:   Re: unofficial rlogin security patch 
Message-ID:  <Pine.LNX.3.91.960725012205.85A-100000@tcpip>
In-Reply-To: <7556.838237326@orion.webspan.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Wed, 24 Jul 1996, Gary Palmer wrote:

> Victor Rotanov wrote in message ID
> <Pine.BSF.3.91.960724215007.1220A-100000@server.fasts.lv>:
> > 
> > Hello.
> > 
> > Here's the patch:
> 
> What exactly is this meant to do, pray tell?

It fixes the TERM environment variable overflow, which can't be exploited 
anyways (because main() never returns) as far as I know, but it is still 
a good thing.


Brian Mitchell 				                brian@saturn.net
"I never give them hell. I just tell the truth and they think it's hell"
- H. Truman




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.LNX.3.91.960725012205.85A-100000>