From owner-cvs-lib Thu Oct 17 11:27:12 1996 Return-Path: owner-cvs-lib Received: (from root@localhost) by freefall.freebsd.org (8.7.5/8.7.3) id LAA18851 for cvs-lib-outgoing; Thu, 17 Oct 1996 11:27:12 -0700 (PDT) Received: (from guido@localhost) by freefall.freebsd.org (8.7.5/8.7.3) id LAA18832; Thu, 17 Oct 1996 11:27:00 -0700 (PDT) Date: Thu, 17 Oct 1996 11:27:00 -0700 (PDT) From: Guido van Rooij Message-Id: <199610171827.LAA18832@freefall.freebsd.org> To: CVS-committers, cvs-all, cvs-lib Subject: cvs commit: src/lib/libc/db/hash hash_buf.c Sender: owner-cvs-lib@FreeBSD.ORG X-Loop: FreeBSD.org Precedence: bulk guido 96/10/17 11:26:59 Modified: lib/libc/db/hash hash_buf.c Log: When freeing buffers in the db routines, also zeroize them This should solve the bug where a coredumping ftpd reveals encrypted passwords. Obtained from: OpenBSD Revision Changes Path 1.2 +21 -11 src/lib/libc/db/hash/hash_buf.c