Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 7 Jan 2009 20:17:55 +0000 (UTC)
From:      "Simon L. Nielsen" <simon@FreeBSD.org>
To:        cvs-src-old@freebsd.org
Subject:   cvs commit: src/contrib/lukemftpd/src extern.h ftpcmd.y ftpd.c
Message-ID:  <200901072033.n07KXSZB065660@repoman.freebsd.org>

next in thread | raw e-mail | index | archive | help
simon       2009-01-07 20:17:55 UTC

  FreeBSD src repository

  Modified files:        (Branch: RELENG_6)
    contrib/lukemftpd/src extern.h ftpcmd.y ftpd.c 
  Log:
  SVN rev 186872 on 2009-01-07 20:17:55Z by simon
  
  Prevent cross-site forgery attacks on lukemftpd(8) due to splitting
  long commands into multiple requests. [09:01]
  
  Fix incorrect OpenSSL checks for malformed signatures due to invalid
  check of return value from EVP_VerifyFinal(), DSA_verify, and
  DSA_do_verify. [09:02]
  
  Security:       FreeBSD-SA-09:01.lukemftpd
  Security:       FreeBSD-SA-09:02.openssl
  Obtained from:  NetBSD [SA-09:01]
  Obtained from:  OpenSSL Project [SA-09:02]
  Approved by:    so (simon)
  
  Revision     Changes    Path
  1.1.1.4.2.2  +1 -1      src/contrib/lukemftpd/src/extern.h
  1.1.1.5.2.2  +31 -8     src/contrib/lukemftpd/src/ftpcmd.y
  1.4.2.2      +8 -2      src/contrib/lukemftpd/src/ftpd.c



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200901072033.n07KXSZB065660>