Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 09 Aug 2000 08:29:16 -0400
From:      Gene Wright <genew@home.com>
To:        Kris Kennaway <kris@FreeBSD.ORG>
Cc:        ports@freebsd.org
Subject:   Re: [SECURITY] Still waiting on net/bb upgrade
Message-ID:  <39914E9C.C16F68B5@home.com>
References:  <Pine.BSF.4.21.0008081937100.20847-100000@freefall.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
This is a multi-part message in MIME format.
--------------FFFD2966DC513A65667A9B03
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit

Kris Kennaway wrote:
> 
> I've sent several messages requesting someone upgrade the net/bb port to
> fix the security hole in the current version, and received some mumbling
> but no concrete upgrade patches :-)
> 
> Can someone please do this?
> 
> Kris
> 
> --
> In God we Trust -- all others must submit an X.509 certificate.
>     -- Charles Forsythe <forsythe@alum.mit.edu>
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-ports" in the body of the message

I forgot to attach the file.

here it is.

Gene Wright
--------------FFFD2966DC513A65667A9B03
Content-Type: text/plain; charset=us-ascii;
 name="bb.diff"
Content-Transfer-Encoding: 7bit
Content-Disposition: inline;
 filename="bb.diff"

diff -rP bb/Makefile bb2/Makefile
5c5
< # $FreeBSD: ports/net/bb/Makefile,v 1.41 2000/05/17 04:05:57 kris Exp $
---
> # $FreeBSD$
9c9
< PORTVERSION=	1.2a
---
> PORTVERSION=	1.4h
11,12c11,13
< MASTER_SITES=	http://maclawran.ca/~sean/bb-dnld/ \
< 		http://freefall.freebsd.org/~andreas/download/
---
> DISTNAME=	bb-1.4h2
> 
> MAINTAINER=	ports@freebsd.org
14d14
< MAINTAINER=	billf@FreeBSD.org
16d15
< FORBIDDEN=	"Remote buffer overflow in bbd"
22c21,25
< WRKSRC=		${WRKDIR}/bb
---
> WRKSRC=		${WRKDIR}/bb14h2
> 
> .if !exists(${_DISTDIR}/${DISTNAME}${EXTRACT_SUFX})
> IGNORE="Please manually download ${DISTNAME}${EXTRACT_SUFX} from http://maclawran.ca/~sean/bb-dnld/index.html. Put ${DISTNAME}${EXTRACT_SUFX} into ${_DISTDIR} and run make again."
> .endif
33c36
< 	( cd ${WRKSRC}/doc; ${SH} bbconfig freebsd )
---
> 	( cd ${WRKSRC}/install; ${SH} bbconfig freebsd )
46,48c49,51
< 	@${MV} -f ${PREFIX}/bb/doc/bbclient ${PREFIX}/bb/bin
< 	@${MV} -f ${PREFIX}/bb/doc/bbconfig ${PREFIX}/bb/bin
< 	@${MV} -f ${PREFIX}/bb/doc ${PREFIX}/share/doc/bb
---
> 	@${MV} -f ${PREFIX}/bb/install/bbclient ${PREFIX}/bb/bin
> 	@${MV} -f ${PREFIX}/bb/install/bbconfig ${PREFIX}/bb/bin
> 	@${MV} -f ${PREFIX}/bb/install ${PREFIX}/share/doc/bb
51d53
< 	@${RM} ${PREFIX}/bb/KNOWN.BUGS
diff -rP bb/README.html bb2/README.html
0a1,30
> <html>
> <title> The FreeBSD Ports Collection (net/bb)</title>
> <head><h1> The FreeBSD Ports Collection ("net/bb")</h1> </head> <hr>
> <body>
> 
> <p>You are now in the directory for the port "net/bb" (package name "bb-1.4h2").
> 
> <p>This is the one-line description for this port:
> 
> <p><hr><p>
> Monitoring and Notifocation for Systems and Networks
> <p><hr>
> 
> <p>Please read the file "<a href="pkg/DESCR">pkg/DESCR</a>" for a
> longer description.
> 
> <p>Go to the <a href="../../README.html">top of the ports tree</a> for
> a summary on how to use the ports collection.
> 
> <p>
> 
> <p>
> 
> 
> <p><hr><p>
> <a href="../README.html"> Go up one level</a>
> |
> <a href="../../README.html"> Go to top of ports tree</a>
> </body>
> </html>
Only in bb/files: Makefile
Only in bb/files: bb.sh
diff -rP bb/files/md5 bb2/files/md5
1c1
< MD5 (bb-1.2a.tar.gz) = 59d36875647c2cfcd3bee93510732be1
---
> MD5 (bb-1.4h2.tar.gz) = 688cc2cb7bab993bdc0f80f68428f0ac
diff -rP bb/patches/patch-aa bb2/patches/patch-aa
1,20c1,15
< --- src/Makefile.freebsd.orig	Sun Jun 27 12:02:36 1999
< +++ src/Makefile.freebsd	Sun Jun 27 12:03:08 1999
< @@ -1,6 +1,6 @@
<  SHELL = /bin/sh
< -MAKE = make
< -CC = gcc
< +MAKE ?= make
< +CC ?= gcc
<  
<  # FLAGS REQUIRED FOR PORTING
<  # SUNOS 4.1.4, HPUX 10.0, and LINUX NEED NOTHING DEFINED
< @@ -13,7 +13,7 @@
<  #LIBS = -ll -lnsl -lsocket	# SOLARIS NEEDS THIS
<  
<  # FREEBSD NEEDS SPECIAL ZOMBIE HANDLING
< -CFLAGS=-DZOMBIE -O
< +CFLAGS+=-DZOMBIE
<  
<  all: bb bbd bbnet touchtime
<  
---
> *** install/bbconfig	Sat May 13 02:44:44 2000
> --- bbconfig	Thu Jul 13 09:24:20 2000
> ***************
> *** 20,24 ****
>   ARGNUM="$#"
>   NAME=`basename $0`; export NAME
> ! DIR=`echo $PROG | sed "s/${NAME}$//"`
>   
>   cd $DIR				# GET TO THE INSTALL DIRECTORY
> --- 20,24 ----
>   ARGNUM="$#"
>   NAME=`basename $0`; export NAME
> ! DIR=`pwd`
>   
>   cd $DIR				# GET TO THE INSTALL DIRECTORY
Only in bb/patches: patch-ac
Only in bb/patches: patch-ad
Only in bb/patches: patch-ae
Only in bb/patches: patch-af
Only in bb/patches: patch-ag
diff -rP bb/pkg/PLIST bb2/pkg/PLIST
1,5c1,20
< bb/LICENSE
< bb/Makefile
< bb/bin/bb
< bb/bin/bb-display.sh
< bb/bin/bb-doack.sh
---
> bb/web/bb-hostsvc.sh.DIST
> bb/web/mkbb.cols
> bb/web/mkbb.sh
> bb/web/mkbb2.sh
> bb/web/mkbb.comp
> bb/web/bb-histlog.sh.DIST
> bb/web/hostsvc_footer
> bb/web/mkbb.page
> bb/web/hostsvc_header
> bb/web/hist_header
> bb/web/histlog_header
> bb/web/hist_footer
> bb/web/histlog_footer
> bb/web/bb-ack.sh.DIST
> bb/web/bb_header
> bb/web/bb2_header
> bb/web/bb_footer
> bb/web/bb2_footer
> bb/web/mkbb.bkg
> bb/web/bb-hist.sh.DIST
7a23,33
> bb/bin/sendmsg
> bb/bin/bb-page.sh.DIST
> bb/bin/bb-page1.sh.DIST
> bb/bin/bb-doack.sh
> bb/bin/bb-display.sh
> bb/bin/bbrun
> bb/bin/savelog.sh
> bb/bin/getipaddr.sh
> bb/bin/bb-enable.sh
> bb/bin/bb-disable.sh
> bb/bin/bb-ping.sh
10,11c36
< bb/bin/bbclient
< bb/bin/bbconfig
---
> bb/bin/bb
14,15d38
< bb/bin/bbrun
< bb/bin/sendmsg
17,18c40,44
< bb/etc/bb-dftab.INFO
< bb/etc/bb-hosts
---
> bb/bin/dumphostsvc
> bb/bin/getipaddr
> bb/bin/bbclient
> bb/bin/bbconfig
> bb/etc/bbwarnrules.cfg.DIST
20,21c46,48
< bb/etc/bbchkhosts.sh
< bb/etc/bbdef.sh
---
> bb/etc/bbsys.sh
> bb/etc/bbdef.sh.DIST
> bb/etc/security.DIST
23,32c50,59
< bb/etc/bbsys.aix
< bb/etc/bbsys.bsdi
< bb/etc/bbsys.debian
< bb/etc/bbsys.dgux
< bb/etc/bbsys.dynix
< bb/etc/bbsys.freebsd
< bb/etc/bbsys.hpux
< bb/etc/bbsys.hpux9
< bb/etc/bbsys.irix
< bb/etc/bbsys.linux
---
> bb/etc/sms.scr
> bb/etc/numeric.scr
> bb/etc/numeric-k6.scr
> bb/etc/bb-proctab.DIST
> bb/etc/bbwarnsetup.cfg
> bb/etc/bb-hosts
> bb/etc/bbchkhosts.sh
> bb/etc/bbchkcmds.sh
> bb/etc/bb-dftab.DIST
> bb/etc/bbchkwarnrules.sh.DIST
34,43c61,62
< bb/etc/bbsys.netbsd
< bb/etc/bbsys.osf
< bb/etc/bbsys.redhat
< bb/etc/bbsys.sco
< bb/etc/bbsys.sco3
< bb/etc/bbsys.sh
< bb/etc/bbsys.solaris
< bb/etc/bbsys.sunos
< bb/etc/bbsys.ultrix
< bb/etc/bbsys.unixware
---
> bb/etc/bbdef.sh
> bb/etc/bbchkwarnrules.sh
45,51d63
< bb/etc/bbwarnsetup.cfg
< bb/etc/numeric-k6.scr
< bb/etc/numeric.scr
< bb/etc/security.INFO
< bb/etc/sms.scr
< bb/ext/.helloworld
< bb/runbb.sh
53,89c65,70
< bb/web/bb-ack.sh
< bb/web/bb-hist.sh
< bb/web/footer
< bb/web/header
< bb/web/mkbb.bkg
< bb/web/mkbb.cols
< bb/web/mkbb.comp
< bb/web/mkbb.page
< bb/web/mkbb.sh
< bb/web/mkbb2.sh
< bb/www/acks/.helloworld
< bb/www/bb-faq.html
< bb/www/bb-help.html
< bb/www/bb-info.html
< bb/www/bb-man.html
< bb/www/bb-page.html
< bb/www/gifs/bb-diag.gif
< bb/www/gifs/bb.gif
< bb/www/gifs/bb2.gif
< bb/www/gifs/bbbut.gif
< bb/www/gifs/bkg-clear.gif
< bb/www/gifs/bkg-green.gif
< bb/www/gifs/bkg-purple.gif
< bb/www/gifs/bkg-red.gif
< bb/www/gifs/bkg-yellow.gif
< bb/www/gifs/blue.gif
< bb/www/gifs/buthelp.gif
< bb/www/gifs/buthist.gif
< bb/www/gifs/butinfo.gif
< bb/www/gifs/butpage.gif
< bb/www/gifs/butview.gif
< bb/www/gifs/clear.gif
< bb/www/gifs/green.gif
< bb/www/gifs/nb-bbbut.gif
< bb/www/gifs/nb-red.gif
< bb/www/gifs/nb-yellow.gif
< bb/www/gifs/purple.gif
---
> bb/ext/mkbb/eventlog.sh
> bb/ext/.helloworld
> bb/ext/ext-proto
> bb/ext/failover
> bb/www/logs/.later
> bb/www/gifs/arrow.gif
90a72,91
> bb/www/gifs/purple.gif
> bb/www/gifs/green.gif
> bb/www/gifs/clear.gif
> bb/www/gifs/blue.gif
> bb/www/gifs/bkg2.gif
> bb/www/gifs/bkg-yellow.gif
> bb/www/gifs/bkg-red.gif
> bb/www/gifs/bkg-purple.gif
> bb/www/gifs/bkg-green.gif
> bb/www/gifs/bkg-clear.gif
> bb/www/gifs/bkg-blue.gif
> bb/www/gifs/bigbrother.gif
> bb/www/gifs/bbupd.gif
> bb/www/gifs/bbnav3.gif
> bb/www/gifs/bbnav2.gif
> bb/www/gifs/bbnav1.gif
> bb/www/gifs/bblogo.gif
> bb/www/gifs/bb.gif
> bb/www/gifs/bb-na.gif
> bb/www/gifs/bb-diag.gif
91a93,95
> bb/www/gifs/nb-yellow.gif
> bb/www/gifs/nb-red.gif
> bb/www/gifs/nb-purple.gif
92a97,137
> bb/www/acks/.helloworld
> bb/www/notes/.helloworld
> bb/www/notes/README
> bb/www/notes/www.bb4.com.html
> bb/www/help/bb-ack.html.DIST
> bb/www/help/bb-help.html
> bb/www/help/bb-faq.html
> bb/www/help/bb-man.html
> bb/www/help/bb-info.html
> bb/www/help/bb-files.html
> bb/www/help/bb-hosts.html
> bb/www/help/bb-notify.html
> bb/www/help/purple.html
> bb/www/help/bb-look.html
> bb/www/histlogs/.helloworld
> bb/www/gifs-bb13/arrow.gif
> bb/www/gifs-bb13/red.gif
> bb/www/gifs-bb13/purple.gif
> bb/www/gifs-bb13/nb-yellow.gif
> bb/www/gifs-bb13/nb-red.gif
> bb/www/gifs-bb13/nb-purple.gif
> bb/www/gifs-bb13/green.gif
> bb/www/gifs-bb13/clear.gif
> bb/www/gifs-bb13/blue.gif
> bb/www/gifs-bb13/bkg2.gif
> bb/www/gifs-bb13/bkg-yellow.gif
> bb/www/gifs-bb13/bkg-red.gif
> bb/www/gifs-bb13/bkg-purple.gif
> bb/www/gifs-bb13/bkg-green.gif
> bb/www/gifs-bb13/bkg-clear.gif
> bb/www/gifs-bb13/bkg-blue.gif
> bb/www/gifs-bb13/bigbrother.gif
> bb/www/gifs-bb13/bbupd.gif
> bb/www/gifs-bb13/bbnav3.gif
> bb/www/gifs-bb13/bbnav2.gif
> bb/www/gifs-bb13/bbnav1.gif
> bb/www/gifs-bb13/bblogo.gif
> bb/www/gifs-bb13/bb.gif
> bb/www/gifs-bb13/bb-na.gif
> bb/www/gifs-bb13/bb-diag.gif
> bb/www/gifs-bb13/yellow.gif
94,105c139,214
< @exec ln -fs bb.html %D/bb/www/index.html
< @unexec rm %D/bb/www/index.html
< bb/www/logs/later
< bb/www/notes/footer
< bb/www/notes/iti-s01
< bb/www/notes/iti-s01.html
< bb/www/notes/iti-s01.iti.qc.ca
< bb/www/notes/iti-s01.iti.qc.ca.html
< bb/www/notes/router-000.htm
< share/apache/cgi-bin/bb-ack.sh
< share/bb/bbclients/.keep_me
< share/doc/bb/FAQ
---
> bb/www/index.html
> bb/www/psy/red.gif
> bb/www/psy/purple.gif
> bb/www/psy/green.gif
> bb/www/psy/clear.gif
> bb/www/psy/blue.gif
> bb/www/psy/bkg2.gif
> bb/www/psy/bkg-yellow.gif
> bb/www/psy/bkg-red.gif
> bb/www/psy/bkg-purple.gif
> bb/www/psy/bkg-green.gif
> bb/www/psy/bkg-clear.gif
> bb/www/psy/bkg-blue.gif
> bb/www/psy/bigbrother.gif
> bb/www/psy/bbupd.gif
> bb/www/psy/bbnav3.gif
> bb/www/psy/bbnav2.gif
> bb/www/psy/bbnav1.gif
> bb/www/psy/bblogo.gif
> bb/www/psy/bb.gif
> bb/www/psy/bb-na.gif
> bb/www/psy/bb-diag.gif
> bb/www/psy/yellow.gif
> bb/www/psy/nb-yellow.gif
> bb/www/psy/nb-red.gif
> bb/www/psy/nb-purple.gif
> bb/www/psy/arrow.gif
> bb/LICENSE
> bb/runbb.sh.DIST
> bb/FILES.LIST
> bb/README.SECURITY
> bb/runbb.sh
> bb/Makefile
> share/doc/apache/manual/bb
> share/doc/bb/bbsys.mandrake
> share/doc/bb/bbsys.aix
> share/doc/bb/bbsys.bsdi
> share/doc/bb/bbsys.debian
> share/doc/bb/bbsys.dgux
> share/doc/bb/bbsys.dynix
> share/doc/bb/bbsys.freebsd
> share/doc/bb/bbsys.hpux
> share/doc/bb/bbsys.hpux9
> share/doc/bb/bbsys.irix
> share/doc/bb/bbsys.linux
> share/doc/bb/bbsys.netbsd
> share/doc/bb/bbsys.osf
> share/doc/bb/bbsys.redhat
> share/doc/bb/bbsys.sco
> share/doc/bb/bbsys.sco3
> share/doc/bb/Makefile.aix
> share/doc/bb/bbsys.solaris
> share/doc/bb/bbsys.sunos
> share/doc/bb/bbsys.ultrix
> share/doc/bb/bbsys.unixware
> share/doc/bb/Makefile.bsdi
> share/doc/bb/Makefile.debian
> share/doc/bb/Makefile.dgux
> share/doc/bb/Makefile.dynix
> share/doc/bb/Makefile.freebsd
> share/doc/bb/Makefile.generic
> share/doc/bb/Makefile.hpux
> share/doc/bb/Makefile.hpux9
> share/doc/bb/Makefile.irix
> share/doc/bb/Makefile.linux
> share/doc/bb/Makefile.netbsd
> share/doc/bb/Makefile.osf
> share/doc/bb/Makefile.redhat
> share/doc/bb/Makefile.sco
> share/doc/bb/Makefile.sco3
> share/doc/bb/Makefile.solaris
> share/doc/bb/Makefile.sunos
> share/doc/bb/Makefile.ultrix
> share/doc/bb/Makefile.unixware
> share/doc/bb/bbsys.openbsd
> share/doc/bb/Makefile.openbsd
108,111c217,228
< share/doc/bb/STRUCTURE
< @exec rm -f %D/share/doc/apache/manual/bb
< @exec ln -fs %D/bb/www %D/share/doc/apache/manual/bb
< @unexec rm %D/share/doc/apache/manual/bb
---
> share/doc/bb/bbsys.caldera
> share/doc/bb/Makefile.caldera
> share/doc/bb/Makefile.sinix
> share/doc/bb/.helloworld
> share/doc/bb/Makefile.bsdi4
> share/doc/bb/bbsys.bsdi4
> share/doc/bb/Makefile.mandrake
> share/doc/bb/bbsys.sinix
> share/apache/cgi-bin/bb-ack.sh
> share/bb/bbclients/.keep_me
> @dirrm bb
> @dirrm bb/web
113a231,232
> @dirrm bb/disabled
> @dirrm bb/tmp
115,116c234,237
< @dirrm bb/web
< @dirrm bb/www/acks
---
> @dirrm bb/ext/hist
> @dirrm bb/ext/mkbb
> @dirrm bb/www
> @dirrm bb/www/logs
119,120c240,241
< @dirrm bb/www/html
< @dirrm bb/www/logs
---
> @dirrm bb/www/acks
> @dirrm bb/www/data
122,126c243,249
< @dirrm bb/www
< @dirrm bb/tmp
< @dirrm bb
< @dirrm share/bb/bbclients
< @dirrm share/bb
---
> @dirrm bb/www/help
> @dirrm bb/www/histlogs
> @dirrm bb/www/gifs-bb13
> @dirrm bb/www/html
> @dirrm bb/www/psy
> @dirrm share/doc/apache
> @dirrm share/doc/apache/manual
127a251,254
> @dirrm share/apache
> @dirrm share/apache/cgi-bin
> @dirrm share/bb
> @dirrm share/bb/bbclients
Only in bb: scripts

--------------FFFD2966DC513A65667A9B03--



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-ports" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?39914E9C.C16F68B5>