Hylafax Mailing List Archives

[Date Prev][Date Next][Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Hylafax and FreeBSD Ports



David Woolley:
>> I noticed that in the FreeBSD port of hylafax a comment says:
>> 
>> FORBIDDEN=      "Security hole (buffer overflow yielding setuid uucp)"
>The BSD people did a major survey, a couple of years ago, for buffer
>overflows, but enen where they did report them to the developers
>the reports were often undiplomatic and confusing - I think such a 
>report would have drawn discussion.

I seem to remember that this notice relates to security-patch.sh of
September 1998. Instead of marking Hylafax bad it would obviously be a
better approach to upgrade the port to 4.1beta2.

Helge



Home
Report any problems to webmaster@hylafax.org

HylaFAX is a trademark of Silicon Graphics Corporation.
Internet connectivity for hylafax.org is provided by:
VirtuALL Private Host Services