From owner-freebsd-security Sun Nov 1 20:31:02 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id UAA01159 for freebsd-security-outgoing; Sun, 1 Nov 1998 20:31:02 -0800 (PST) (envelope-from owner-freebsd-security@FreeBSD.ORG) Received: from gatekeeper.iserver.com (gatekeeper.iserver.com [192.41.0.2]) by hub.freebsd.org (8.8.8/8.8.8) with ESMTP id UAA01144 for ; Sun, 1 Nov 1998 20:30:57 -0800 (PST) (envelope-from hart@iserver.com) Received: by gatekeeper.iserver.com; Sun, 1 Nov 1998 21:30:46 -0700 (MST) Received: from unknown(192.168.1.109) by gatekeeper.iserver.com via smap (V3.1.1) id xma013543; Sun, 1 Nov 98 21:30:42 -0700 Received: (hart@localhost) by anchovy.orem.iserver.com (8.8.8) id VAA20367; Sun, 1 Nov 1998 21:29:32 -0700 (MST) Date: Sun, 1 Nov 1998 21:29:32 -0700 (MST) From: Paul Hart X-Sender: hart@anchovy.orem.iserver.com To: "Jan B. Koum " cc: Peter Jeremy , freebsd-security@FreeBSD.ORG, winter@jurai.net Subject: Re: SSH vsprintf patch. (You've been warned Mr. Glass) In-Reply-To: <19981101192724.A26335@best.com> Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org On Sun, 1 Nov 1998, Jan B. Koum wrote: > Which is why when you install ssh, you can run ./configure with > "--disable-suid-ssh" argument. Which is a good thing, except for this time where the alleged hole appears to be in sshd, a problem a non-SUID ssh won't help. Paul Hart -- Paul Robert Hart ><8> ><8> ><8> Verio Web Hosting, Inc. hart@iserver.com ><8> ><8> ><8> http://www.iserver.com/ To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message