Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 2 Nov 1998 00:32:12 -0800 (PST)
From:      Jim Shankland <jas@flyingfox.com>
To:        dima@best.net
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: SSH vsprintf patch. (You've been warned Mr. Glass)
Message-ID:  <199811020832.AAA15786@biggusdiskus.flyingfox.com>
In-Reply-To: <199811020647.WAA25893@burka.rdy.com>

next in thread | previous in thread | raw e-mail | index | archive | help
dima@best.net (Dima Ruban) writes:

> Let me ask you this. Would you trust a packet that came from
> non-priviledged port and which wants to do something that even
> remotely should be secure?

No.  Same as for a packet that came from a privileged port.

A packet's source port is a pretty weak authenticator, to coin
an understatement.

Jim Shankland
NLynx Systems, Inc.


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199811020832.AAA15786>