Bug 2582 - security hole in lib/libc/nls/msgcat.c
Summary: security hole in lib/libc/nls/msgcat.c
Status: Closed FIXED
Alias: None
Product: Base System
Classification: Unclassified
Component: bin (show other bugs)
Version: 3.0-CURRENT
Hardware: Any Any
: Normal Affects Only Me
Assignee: Warner Losh
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 1997-01-25 16:50 UTC by Julian Assange
Modified: 1997-03-24 06:15 UTC (History)
0 users

See Also:


Attachments
file.diff (662 bytes, patch)
1997-01-25 16:50 UTC, Julian Assange
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Julian Assange 1997-01-25 16:50:01 UTC
	exploitable stack over-run in catopen(3)

Fix: ignore env if [gu]id!=e[gu]id
Comment 1 mpp freebsd_committer freebsd_triage 1997-01-26 07:11:50 UTC
Responsible Changed
From-To: gnats-admin->freebsd-bugs

Misfiled PR. 
Comment 2 Bill Fenner freebsd_committer freebsd_triage 1997-01-27 18:31:52 UTC
Responsible Changed
From-To: freebsd-bugs->freebsd-bugs

It didn't. 
Comment 3 Warner Losh freebsd_committer freebsd_triage 1997-02-09 06:41:53 UTC
Responsible Changed
From-To: freebsd-bugs->imp

I'm going to fix this 
Comment 4 Warner Losh freebsd_committer freebsd_triage 1997-03-24 06:15:18 UTC
State Changed
From-To: open->closed


fixed in msgcat.c 1.8