From owner-freebsd-stable Wed Oct 3 7:24:47 2001 Delivered-To: freebsd-stable@freebsd.org Received: from yertle.kciLink.com (yertle.kcilink.com [216.194.193.105]) by hub.freebsd.org (Postfix) with ESMTP id 3238F37B406 for ; Wed, 3 Oct 2001 07:24:45 -0700 (PDT) Received: from onceler.kciLink.com (onceler.kciLink.com [216.194.193.106]) by yertle.kciLink.com (Postfix) with ESMTP id BF6C52E462 for ; Wed, 3 Oct 2001 10:24:44 -0400 (EDT) Received: (from khera@localhost) by onceler.kciLink.com (8.11.6/8.11.6) id f93EOiJ14703; Wed, 3 Oct 2001 10:24:44 -0400 (EDT) (envelope-from khera@kcilink.com) X-Authentication-Warning: onceler.kciLink.com: khera set sender to khera@kcilink.com using -f To: stable@freebsd.org Subject: Re: something strange in 4.4-Stable ? References: <20011001015730.A1032@uni-duesseldorf.de> <20010930204335.A53631@xor.obsecurity.org> From: Vivek Khera Date: 03 Oct 2001 10:24:44 -0400 In-Reply-To: <20010930204335.A53631@xor.obsecurity.org> Message-ID: Lines: 16 User-Agent: Gnus/5.0808 (Gnus v5.8.8) XEmacs/21.1 (Cuyahoga Valley) MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Sender: owner-freebsd-stable@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG >>>>> "KK" == Kris Kennaway writes: KK> Read the release notes for 4.4-R. KK> ~/.login_conf was disabled until we can fix a security vulnerability. Damn! This breaks my anonymous ftp upload security. Now the umask for uploaded files is not preventing re-download. Is there no way to re-enable it as this is the only .login_conf file on the whole system. -- =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= Vivek Khera, Ph.D. Khera Communications, Inc. Internet: khera@kciLink.com Rockville, MD +1-240-453-8497 AIM: vivekkhera Y!: vivek_khera http://www.khera.org/~vivek/ To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-stable" in the body of the message