From owner-freebsd-security Mon Jul 23 8:58:45 2001 Delivered-To: freebsd-security@freebsd.org Received: from earth.backplane.com (earth-nat-cw.backplane.com [208.161.114.67]) by hub.freebsd.org (Postfix) with ESMTP id E323837B403; Mon, 23 Jul 2001 08:58:39 -0700 (PDT) (envelope-from dillon@earth.backplane.com) Received: (from dillon@localhost) by earth.backplane.com (8.11.4/8.11.2) id f6NFwTB17064; Mon, 23 Jul 2001 08:58:29 -0700 (PDT) (envelope-from dillon) Date: Mon, 23 Jul 2001 08:58:29 -0700 (PDT) From: Matt Dillon Message-Id: <200107231558.f6NFwTB17064@earth.backplane.com> To: Brian Somers Cc: Jeroen Massar , Brian Somers , Hajimu UMEMOTO , aschneid@mail.slc.edu, ras@e-gerbil.net, roam@orbitel.bg, freebsd-security@FreeBSD.ORG, freebsd-gnats-submit@FreeBSD.ORG Subject: Re: bin/22595: telnetd tricked into using arbitrary peer ip References: <200107231117.f6NBHYg61233@hak.lan.Awfulhak.org> Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org : :Matt wrote: :> > Pretty much our only option is to extend the size of existing fields :> > and take the 'oh hell the structure size changed' hit. : :I wrote: :> Ok, I agree. I think we should bump UT_HOSTSIZE to 40 then and only :> put unscoped addresses in the field (ie, fec0::1, not fec0::1%vr0). :> :> Any disagreements ? Should this be brought up (explained) on -arch :> now ? : :Interestingly enough, OpenBSD has UT_HOSTSIZE set to 256. : :-- :Brian Heh. Are they still trying to store the FQDN? -Matt To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message