From owner-freebsd-bugs@FreeBSD.ORG Fri Dec 23 04:00:28 2011 Return-Path: Delivered-To: freebsd-bugs@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id EE58A1065689 for ; Fri, 23 Dec 2011 04:00:27 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id 644CB8FC16 for ; Fri, 23 Dec 2011 04:00:20 +0000 (UTC) Received: from freefall.freebsd.org (localhost [127.0.0.1]) by freefall.freebsd.org (8.14.5/8.14.5) with ESMTP id pBN40K8x064071 for ; Fri, 23 Dec 2011 04:00:20 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.14.5/8.14.5/Submit) id pBN40K05064070; Fri, 23 Dec 2011 04:00:20 GMT (envelope-from gnats) Resent-Date: Fri, 23 Dec 2011 04:00:20 GMT Resent-Message-Id: <201112230400.pBN40K05064070@freefall.freebsd.org> Resent-From: FreeBSD-gnats-submit@FreeBSD.org (GNATS Filer) Resent-To: freebsd-bugs@FreeBSD.org Resent-Reply-To: FreeBSD-gnats-submit@FreeBSD.org, Dan Mashal Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id CAA4C106566B for ; Fri, 23 Dec 2011 03:53:17 +0000 (UTC) (envelope-from nobody@FreeBSD.org) Received: from red.freebsd.org (red.freebsd.org [IPv6:2001:4f8:fff6::22]) by mx1.freebsd.org (Postfix) with ESMTP id B53378FC0C for ; Fri, 23 Dec 2011 03:53:17 +0000 (UTC) Received: from red.freebsd.org (localhost [127.0.0.1]) by red.freebsd.org (8.14.4/8.14.4) with ESMTP id pBN3rHQM029042 for ; Fri, 23 Dec 2011 03:53:17 GMT (envelope-from nobody@red.freebsd.org) Received: (from nobody@localhost) by red.freebsd.org (8.14.4/8.14.4/Submit) id pBN3rH1x029032; Fri, 23 Dec 2011 03:53:17 GMT (envelope-from nobody) Message-Id: <201112230353.pBN3rH1x029032@red.freebsd.org> Date: Fri, 23 Dec 2011 03:53:17 GMT From: Dan Mashal To: freebsd-gnats-submit@FreeBSD.org X-Send-Pr-Version: www-3.1 Cc: Subject: misc/163555: [PATCH] bitchx port is out of date and BitchX 1.2 does not compile (fix included) X-BeenThere: freebsd-bugs@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 23 Dec 2011 04:00:28 -0000 >Number: 163555 >Category: misc >Synopsis: [PATCH] bitchx port is out of date and BitchX 1.2 does not compile (fix included) >Confidential: no >Severity: critical >Priority: high >Responsible: freebsd-bugs >State: open >Quarter: >Keywords: >Date-Required: >Class: update >Submitter-Id: current-users >Arrival-Date: Fri Dec 23 04:00:20 UTC 2011 >Closed-Date: >Last-Modified: >Originator: Dan Mashal >Release: FreeBSD 9.0-RC3 >Organization: net >Environment: FreeBSD w00p 9.0-RC3 FreeBSD 9.0-RC3 #0: Sun Dec 4 08:56:36 UTC 2011 root@farrell.cse.buffalo.edu:/usr/obj/usr/src/sys/GENERIC amd64 >Description: Old obsolete, insecure version. The current version of BitchX, released in 2004, have security problems allowing remote IRC servers to execute arbitrary code on the client's machine (CVE-2007-3360, CVE-2007-4584). http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2007-3360 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2007-4584 BitchX 1.2 is release ready per developers (caf) and should be added to the ports tree. It is stable. However, in order for it to compile on BitchX 9 the configure file must be patched. I would also like to become the maintainer of the BitchX port. >How-To-Repeat: run the following commands: 0) Be running FreeBSD9.0-RC3 system. 1) svn co https://bitchx.svn.sourceforge.net/svnroot/bitchx/trunk bitchx-trunk 2) cd bitchx-trunk 3) ./configure Receive error about unterminated quoted strings. >Fix: Change the configure file in the BitchX1.2 source. lines changed in configure file: 12668 and 13936 diff: # diff configure.old configure.new 12668c12668 < system="MP-RAS-`$AWK '{print $3}' /etc/.relid'`" --- > system="MP-RAS-$AWK {print $3} /etc/.relid" 13936c13936 < system="MP-RAS-`$AWK '{print $3}' /etc/.relid'`" --- > system="MP-RAS-$AWK {print $3} /etc/.relid" >Release-Note: >Audit-Trail: >Unformatted: