From owner-cvs-src@FreeBSD.ORG Fri Nov 19 09:41:10 2004 Return-Path: Delivered-To: cvs-src@freebsd.org Received: by hub.freebsd.org (Postfix, from userid 1035) id 1DFAD16A4CF; Fri, 19 Nov 2004 09:41:10 +0000 (GMT) Date: Fri, 19 Nov 2004 09:41:10 +0000 From: Xin LI To: Josef El-Rayes Message-ID: <20041119094110.GA52399@hub.freebsd.org> References: <200411181521.iAIFLCJ3062379@repoman.freebsd.org> <20041118153825.GA12893@daemon.li> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20041118153825.GA12893@daemon.li> User-Agent: Mutt/1.4.1i cc: cvs-src@FreeBSD.org cc: src-committers@FreeBSD.org cc: cvs-all@FreeBSD.org Subject: Re: cvs commit: src/usr.sbin/pppd cbcp.c X-BeenThere: cvs-src@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: CVS commit messages for the src tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 19 Nov 2004 09:41:10 -0000 On Thu, Nov 18, 2004 at 03:38:25PM +0000, Josef El-Rayes wrote: > Xin LI : > > Correct a potential DoS vulnerability, as described at > > > > http://www.securityfocus.com/archive/1/379450 > > This advisory is incorrect. > > It is actually not a DoS vulnerability as the attacker > can only kill the connection to him, not others, Hmm... Thanks for pointing this out. Do I need to do a forced commit to explain this? Cheers,