From owner-cvs-all Sun Jan 28 16:36: 6 2001 Delivered-To: cvs-all@freebsd.org Received: from obsecurity.org (adsl-63-207-60-1.dsl.lsan03.pacbell.net [63.207.60.1]) by hub.freebsd.org (Postfix) with ESMTP id C117437B6A0; Sun, 28 Jan 2001 16:35:43 -0800 (PST) Received: by obsecurity.org (Postfix, from userid 1000) id A9851BA6F8; Sun, 28 Jan 2001 16:36:12 -0800 (PST) Date: Sun, 28 Jan 2001 16:36:12 -0800 From: Kris Kennaway To: "Chris D. Faulhaber" Cc: cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org, ports@FreeBSD.org Subject: Re: cvs commit: ports/japanese/xklock Makefile Message-ID: <20010128163612.A30626@xor.obsecurity.org> References: <200101290026.f0T0QGW57469@freefall.freebsd.org> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-md5; protocol="application/pgp-signature"; boundary="Dxnq1zWXvFF0Q93v" Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: <200101290026.f0T0QGW57469@freefall.freebsd.org>; from jedgar@FreeBSD.org on Sun, Jan 28, 2001 at 04:26:16PM -0800 Sender: owner-cvs-all@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG --Dxnq1zWXvFF0Q93v Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Sun, Jan 28, 2001 at 04:26:16PM -0800, Chris D. Faulhaber wrote: > jedgar 2001/01/28 16:26:16 PST >=20 > Modified files: > japanese/xklock Makefile=20 > Log: > Mark FORBIDDEN due to exploitable buffer overflows. > =20 > Due to the age of this software (circa 1990) and it's reliance > on being suid, this port needs a thorough audit before clearing. I'll add to this that since the port has no maintainer, we'll remove it in a month or so unless someone comes forward to save it. Kris --Dxnq1zWXvFF0Q93v Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.4 (FreeBSD) Comment: For info see http://www.gnupg.org iD8DBQE6dLr7Wry0BWjoQKURAiY9AJ4+rrnrlVtxHazywGuBUV7yJ0vQ1wCfZGLX 5Ll6s57WEZvgHzeeeYqb/1E= =Ovnb -----END PGP SIGNATURE----- --Dxnq1zWXvFF0Q93v-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe cvs-all" in the body of the message