From owner-freebsd-security Thu Apr 19 12:43:14 2001 Delivered-To: freebsd-security@freebsd.org Received: from peitho.fxp.org (peitho.fxp.org [209.26.95.40]) by hub.freebsd.org (Postfix) with ESMTP id 3671D37B422 for ; Thu, 19 Apr 2001 12:43:09 -0700 (PDT) (envelope-from cdf.lists@fxp.org) Received: by peitho.fxp.org (Postfix, from userid 1501) id A954C13614; Thu, 19 Apr 2001 15:43:08 -0400 (EDT) Date: Thu, 19 Apr 2001 15:43:08 -0400 From: Chris Faulhaber To: Chris Byrnes Cc: security@freebsd.org Subject: Re: Security, glob FTP, new fix Message-ID: <20010419154308.D81766@peitho.fxp.org> References: <20010419153104.C81766@peitho.fxp.org> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-md5; protocol="application/pgp-signature"; boundary="11Y7aswkeuHtSBEs" Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: ; from chris@jeah.net on Thu, Apr 19, 2001 at 02:32:09PM -0500 Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org --11Y7aswkeuHtSBEs Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Thu, Apr 19, 2001 at 02:32:09PM -0500, Chris Byrnes wrote: > indeed i did >=20 I am unable to reproduce this on a 4.2-STABLE box from December. The updated patch definitely adds GLOB_MAXPATH to glob.h so I have no idea why your ftpcmd.y is not picking it up. --=20 Chris D. Faulhaber - jedgar@fxp.org - jedgar@FreeBSD.org -------------------------------------------------------- FreeBSD: The Power To Serve - http://www.FreeBSD.org > On Thu, 19 Apr 2001, Chris Faulhaber wrote: >=20 > > On Thu, Apr 19, 2001 at 02:20:01PM -0500, Chris Byrnes wrote: > > > /usr/src/libexec/ftpd/ftpcmd.y: In function `yyparse': > > > /usr/src/libexec/ftpd/ftpcmd.y:933: `GLOB_MAXPATH' undeclared (first = use > > > in this function) > > > /usr/src/libexec/ftpd/ftpcmd.y:933: (Each undeclared identifier is > > > reported only once > > > /usr/src/libexec/ftpd/ftpcmd.y:933: for each function it appears in.) > > > *** Error code 1 > > > > > > > Did you copy the patched /usr/src/include/glob.h to /usr/include/ > > like the revised advisory states? > > --11Y7aswkeuHtSBEs Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.4 (FreeBSD) Comment: FreeBSD: The Power To Serve iEYEARECAAYFAjrfP8wACgkQObaG4P6BelD9fACdHcRZ5UrqnAjoo8WQNGIOvsxA Q+8AnR58xEPMxU66IGT0chdaeXffJT/S =PIyO -----END PGP SIGNATURE----- --11Y7aswkeuHtSBEs-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message