cvs commit: ports/devel/cscope Makefile ports/devel/cscope/files patch-src::main.c

Pete Fritchman petef at FreeBSD.org
Wed Dec 15 08:37:45 PST 2004


petef       2004-12-15 16:37:44 UTC

  FreeBSD ports repository

  Modified files:
    devel/cscope         Makefile 
  Added files:
    devel/cscope/files   patch-src::main.c 
  Log:
  Fix CAN-2004-0996 vulnerability & bump PORTREVISION:
          main.c in cscope 15-4 and 15-5 creates temporary files with
          predictable filenames, which allows local users to overwrite
          arbitrary files via a symlink attack.
  
  PR:             75104
  Submitted by:   Matthias Andree <matthias.andree at gmx.de>
  
  Revision  Changes    Path
  1.23      +1 -0      ports/devel/cscope/Makefile
  1.1       +52 -0     ports/devel/cscope/files/patch-src::main.c (new)


More information about the cvs-all mailing list