From owner-cvs-all Wed Sep 29 14:10: 6 1999 Delivered-To: cvs-all@freebsd.org Received: from freefall.freebsd.org (freefall.FreeBSD.ORG [204.216.27.21]) by hub.freebsd.org (Postfix) with ESMTP id EEFA5155D3; Wed, 29 Sep 1999 14:09:42 -0700 (PDT) (envelope-from guido@FreeBSD.org) Received: (from guido@localhost) by freefall.freebsd.org (8.9.3/8.9.2) id OAA00913; Wed, 29 Sep 1999 14:09:42 -0700 (PDT) (envelope-from guido@FreeBSD.org) Message-Id: <199909292109.OAA00913@freefall.freebsd.org> From: Guido van Rooij Date: Wed, 29 Sep 1999 14:09:42 -0700 (PDT) To: cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org Subject: cvs commit: src/sys/kern uipc_usrreq.c Sender: owner-cvs-all@FreeBSD.ORG Precedence: bulk guido 1999/09/29 14:09:42 PDT Modified files: sys/kern uipc_usrreq.c Log: Do not follow symlinks when binding a unix domain socket. This fixes the ssh 1.2.27 vulnerability as reported in bugtraq. Revision Changes Path 1.49 +2 -2 src/sys/kern/uipc_usrreq.c To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe cvs-all" in the body of the message