From owner-cvs-ports Thu Jan 11 01:00:21 1996 Return-Path: owner-cvs-ports Received: (from root@localhost) by freefall.freebsd.org (8.7.3/8.7.3) id BAA11913 for cvs-ports-outgoing; Thu, 11 Jan 1996 01:00:21 -0800 (PST) Received: (from pst@localhost) by freefall.freebsd.org (8.7.3/8.7.3) id BAA11900 Thu, 11 Jan 1996 01:00:17 -0800 (PST) Date: Thu, 11 Jan 1996 01:00:17 -0800 (PST) From: Paul Traina Message-Id: <199601110900.BAA11900@freefall.freebsd.org> To: CVS-committers, cvs-ports Subject: cvs commit: ports/x11/rxvt/patches patch-ac Sender: owner-cvs-ports@FreeBSD.ORG Precedence: bulk pst 96/01/11 01:00:16 Added: x11/rxvt/patches patch-ac Log: Patch around a security vulnerability in rxvt. Give up root privileges when they're not necessary. RXVT's handling of /etc/utmp is blatantly idiotic under FreeBSD but at least it's not a security hole anymore. Obtained from: Marc Ewing (marc@redhat.com) from BUGTRAQ mailing list.