Bug 55424 - Potential high risk security problem in
Summary: Potential high risk security problem in
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: Normal Affects Only Me
Assignee: Patrick Li
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2003-08-09 17:50 UTC by Liu Kang
Modified: 2003-08-09 21:26 UTC (History)
1 user (show)

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Liu Kang 2003-08-09 17:50:16 UTC
There might be a serious security problem(remote shell) in 
ports/games/halflifeserver.
The exploit has been posted on bugtraq: 
http://www.securityfocus.com/archive/1/331941
I do not have halflife's game disc or bin, so I can not test if it is really 
work or not.

Fix: 

mark as FORBIDDEN temporarily?

_________________________________________________________________
Add photos to your e-mail with MSN 8. Get 2 months FREE*. 
http://join.msn.com/?page=features/featuredemail
How-To-Repeat: n/a
Comment 1 Kirill Ponomarev freebsd_committer freebsd_triage 2003-08-09 19:01:58 UTC
Responsible Changed
From-To: freebsd-ports-bugs->pat

Over to maintainer.
Comment 2 Patrick Li freebsd_committer freebsd_triage 2003-08-09 21:25:49 UTC
State Changed
From-To: open->closed

Update to 3.1.1.1.d should resolve this. Thanks for your submission.