Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 27 Feb 2003 19:17:29 +0200
From:      Alexandr Kovalenko <never@nevermind.kiev.ua>
To:        freebsd-security@freebsd.org
Subject:   Fwd: (patch for zlib) Re: poc zlib sploit just for fun :)
Message-ID:  <20030227171729.GC5081@nevermind.kiev.ua>

next in thread | raw e-mail | index | archive | help
----- Forwarded message from "Ralf S. Engelschall" <rse@engelschall.com> -----

Date: Thu, 27 Feb 2003 15:41:49 +0100
From: "Ralf S. Engelschall" <rse@engelschall.com>
To: bugtraq@securityfocus.com
Subject: Re: poc zlib sploit just for fun :)
Reply-To: rse@engelschall.com


In article <200302241751.25591.kelledin+BTQ@skarpsey.dyndns.org> you wrote:

> [...]
> Attached below is a patch RK and I whipped up yesterday, after I 
> caught wind of this problem sometime in the afternoon.
> [...]

Thanks for your efforts. We've reviewed your patch for inclusion into
our OpenPKG "zlib" package and discovered that your configure checks are
not quite correct. For instance, you're incorrectly putting a va_list
variable into a snprintf call in one check, etc. Additionally we've
stripped down in size the patch to gzio.c (you re-formatted existing
code, etc). See http://cvs.openpkg.org/openpkg-src/zlib/zlib.patch for
our derived version of your patch in case you're interested.

                                       Ralf S. Engelschall
                                       rse@engelschall.com
                                       www.engelschall.com

----- End forwarded message -----

-- 
NEVE-RIPE, will build world for food
Ukrainian FreeBSD User Group
http://uafug.org.ua/

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030227171729.GC5081>