Date: Thu, 27 Feb 2003 19:17:29 +0200 From: Alexandr Kovalenko <never@nevermind.kiev.ua> To: freebsd-security@freebsd.org Subject: Fwd: (patch for zlib) Re: poc zlib sploit just for fun :) Message-ID: <20030227171729.GC5081@nevermind.kiev.ua>
next in thread | raw e-mail | index | archive | help
----- Forwarded message from "Ralf S. Engelschall" <rse@engelschall.com> ----- Date: Thu, 27 Feb 2003 15:41:49 +0100 From: "Ralf S. Engelschall" <rse@engelschall.com> To: bugtraq@securityfocus.com Subject: Re: poc zlib sploit just for fun :) Reply-To: rse@engelschall.com In article <200302241751.25591.kelledin+BTQ@skarpsey.dyndns.org> you wrote: > [...] > Attached below is a patch RK and I whipped up yesterday, after I > caught wind of this problem sometime in the afternoon. > [...] Thanks for your efforts. We've reviewed your patch for inclusion into our OpenPKG "zlib" package and discovered that your configure checks are not quite correct. For instance, you're incorrectly putting a va_list variable into a snprintf call in one check, etc. Additionally we've stripped down in size the patch to gzio.c (you re-formatted existing code, etc). See http://cvs.openpkg.org/openpkg-src/zlib/zlib.patch for our derived version of your patch in case you're interested. Ralf S. Engelschall rse@engelschall.com www.engelschall.com ----- End forwarded message ----- -- NEVE-RIPE, will build world for food Ukrainian FreeBSD User Group http://uafug.org.ua/ To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030227171729.GC5081>