]> CyberLeo.Net >> Repos - FreeBSD/FreeBSD.git/commit
Be much more paranoid about where uudecode writes its output, especially
authorfanf <fanf@FreeBSD.org>
Fri, 1 Nov 2002 00:58:00 +0000 (00:58 +0000)
committerfanf <fanf@FreeBSD.org>
Fri, 1 Nov 2002 00:58:00 +0000 (00:58 +0000)
commitc46715077793ed90d5eaf4f4ce3ebd59fe491d56
tree1e19d098d93d0e38d464197e6b665f2c43de5abb
parent760e63e6f7c93856411ba0045221c7e278044c92
Be much more paranoid about where uudecode writes its output, especially
when the filename comes from the untrusted input. This is a work-around
for careless people who don't routinely check the begin line of the file
or run uudecode -i and instead report "vulnerabilities" to CERT.
http://www.kb.cert.org/vuls/id/336083
usr.bin/uudecode/uudecode.c