From owner-freebsd-bugs Wed Jan 3 9: 2:49 2001 From owner-freebsd-bugs@FreeBSD.ORG Wed Jan 3 09:02:48 2001 Return-Path: Delivered-To: freebsd-bugs@freebsd.org Received: from mta03-svc.ntlworld.com (mta03-svc.ntlworld.com [62.253.162.43]) by hub.freebsd.org (Postfix) with ESMTP id 9EDF637B400 for ; Wed, 3 Jan 2001 09:02:47 -0800 (PST) Received: from sobek.openirc.co.uk ([62.252.11.171]) by mta03-svc.ntlworld.com (InterMail vM.4.01.02.27 201-229-119-110) with ESMTP id <20010103170246.KLRD10171.mta03-svc.ntlworld.com@sobek.openirc.co.uk>; Wed, 3 Jan 2001 17:02:46 +0000 Date: Wed, 3 Jan 2001 17:07:04 +0000 (GMT) From: George Reid X-Sender: geeorgy@sobek.openirc.co.uk To: Daniel Hagan Cc: freebsd-bugs@freebsd.org Subject: Re: misc/24034: "CWD" discloses the full "real" path in a chroot environment (freebsd 4.2-stable aprox december 11th) In-Reply-To: <200101031640.f03Ge3Y76093@freefall.freebsd.org> Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-bugs@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org On Wed, 3 Jan 2001, Daniel Hagan wrote: > It looks to me like this was fixed in r. 1.18 of ftpcmd.y (2000/11/26). > I can't test it to be sure, but the log messages indicate something to > that effect, and the code doesn't look like it should leak anymore. > Perhaps someone should roll this back into STABLE as well (r. 1.16.x.x I > think)? The commit log say so, but the bug was not fixed (I did test it). My previous patch fixes it. George Reid * greid@ukug.uk.freebsd.org To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-bugs" in the body of the message