From owner-freebsd-chat Mon Jul 10 0:20: 8 2000 Delivered-To: freebsd-chat@freebsd.org Received: from fw.wintelcom.net (ns1.wintelcom.net [209.1.153.20]) by hub.freebsd.org (Postfix) with ESMTP id 12D8337BC2B; Mon, 10 Jul 2000 00:19:57 -0700 (PDT) (envelope-from bright@fw.wintelcom.net) Received: (from bright@localhost) by fw.wintelcom.net (8.10.0/8.10.0) id e6A7JuL19973; Mon, 10 Jul 2000 00:19:56 -0700 (PDT) Date: Mon, 10 Jul 2000 00:19:56 -0700 From: Alfred Perlstein To: Kris Kennaway Cc: chat@FreeBSD.org Subject: Re: cvs commit: src/sys/boot/common commands.c Message-ID: <20000710001956.D25571@fw.wintelcom.net> References: <200007100633.XAA59928@freefall.freebsd.org> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.2i In-Reply-To: <200007100633.XAA59928@freefall.freebsd.org>; from kris@FreeBSD.org on Sun, Jul 09, 2000 at 11:33:56PM -0700 Sender: owner-freebsd-chat@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org * Kris Kennaway [000709 23:34] wrote: > kris 2000/07/09 23:33:56 PDT > > Modified files: > sys/boot/common commands.c > Log: > Don't call printf with no format string. This is technically a security > vulnerability and could in principle be used to upload a new kernel from the > bootloader :-) These two strings walk into a bar and sit down. The bartender says, "So what'll it be?" The first string says, "I think I'll have a beer quag fulk boorg jdk^CjfdLk jk3s d#f67howe%^U r89nvy~~owmc63^Dz x.xvcu" "Please excuse my friend," the second string says, "He isn't null-terminated." -- From the RHF archives as selected by Brad Templeton, Maddi Hausmann and Jim Griffith. This newsgroup posts former jokes from the newsgroup rec.humor.funny. Visit http://www.netfunny.com/rhf to browse the RHF pages and archives on the web. har har har... *runs away* -Alfred To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-chat" in the body of the message