From owner-freebsd-security Sun Nov 1 21:39:23 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id VAA10475 for freebsd-security-outgoing; Sun, 1 Nov 1998 21:39:23 -0800 (PST) (envelope-from owner-freebsd-security@FreeBSD.ORG) Received: from shell6.ba.best.com (shell6.ba.best.com [206.184.139.137]) by hub.freebsd.org (8.8.8/8.8.8) with ESMTP id VAA10469 for ; Sun, 1 Nov 1998 21:39:21 -0800 (PST) (envelope-from jkb@shell6.ba.best.com) Received: (from jkb@localhost) by shell6.ba.best.com (8.9.0/8.9.0/best.sh) id VAA12288; Sun, 1 Nov 1998 21:38:18 -0800 (PST) Message-ID: <19981101213817.A11911@best.com> Date: Sun, 1 Nov 1998 21:38:17 -0800 From: "Jan B. Koum " To: dima@best.net Cc: peter.jeremy@auss2.alcatel.com.au, freebsd-security@FreeBSD.ORG, winter@jurai.net Subject: Re: SSH vsprintf patch. (You've been warned Mr. Glass) References: <19981101192724.A26335@best.com> <199811020513.VAA25455@burka.rdy.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii X-Mailer: Mutt 0.93.2i In-Reply-To: <199811020513.VAA25455@burka.rdy.com>; from Dima Ruban on Sun, Nov 01, 1998 at 09:13:36PM -0800 Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org On Sun, Nov 01, 1998 at 09:13:36PM -0800, Dima Ruban wrote: > Jan B. Koum writes: > > Which is why when you install ssh, you can run ./configure with > > "--disable-suid-ssh" argument. > > Which will introduce tonns of other problems. Such as? I have been using ssh this way for about a year and haven't seen any. Then again - I am not doing anything fancy with ssh. And no, I don't need to have ssh installed suid just to get .rhost type authentication. -- Yan To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message