From owner-freebsd-current Thu Jan 9 23:45:20 1997 Return-Path: Received: (from root@localhost) by freefall.freebsd.org (8.8.4/8.8.4) id XAA26856 for current-outgoing; Thu, 9 Jan 1997 23:45:20 -0800 (PST) Received: from rover.village.org (rover.village.org [204.144.255.49]) by freefall.freebsd.org (8.8.4/8.8.4) with SMTP id XAA26851 for ; Thu, 9 Jan 1997 23:45:13 -0800 (PST) Received: from rover.village.org [127.0.0.1] by rover.village.org with esmtp (Exim 0.56 #1) id E0vibeK-00075I-00; Fri, 10 Jan 1997 00:45:12 -0700 To: current@freebsd.org Subject: ppp changes for buffer overflows going in Date: Fri, 10 Jan 1997 00:45:12 -0700 From: Warner Losh Message-Id: Sender: owner-current@freebsd.org X-Loop: FreeBSD.org Precedence: bulk I'm about to commit a large number of changes to the user mode ppp. Since they are all no brainers, and have been reviewed, I feel reasonabily confident that things are OK. However, I am unable to test ppp to my level of satisfaction easily, since I don't have a ppp link to test it with. I think these changes will be good, but thought I'd give a heads up. They are 2.2 candidates, but I'd like to have them be tested in -current for as long as possible before committing to the 2.2 branch. They fix an exploitable ppp buffer overflow problem that could be used to break root. Warner