aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorkris <kris@FreeBSD.org>1999-12-02 03:30:42 +0800
committerkris <kris@FreeBSD.org>1999-12-02 03:30:42 +0800
commit4fd8dba11120ea2dd6055bbaea71ca81852a07e6 (patch)
tree138a4a77af17b42ba1a885768877bf9c6329e99e
parentaa8f19e3dd651324c8c0280baebd40105101f209 (diff)
downloadfreebsd-ports-graphics-4fd8dba11120ea2dd6055bbaea71ca81852a07e6.tar.gz
freebsd-ports-graphics-4fd8dba11120ea2dd6055bbaea71ca81852a07e6.tar.zst
freebsd-ports-graphics-4fd8dba11120ea2dd6055bbaea71ca81852a07e6.zip
Mark BROKEN due to buffer overflow yielding root to members of wheel. There's
also an overflow with ospf_monitor which may result in being able to corrupt routing traffic (which I've reported to the developers) According to the docs, gdc shouldn't be installed root:wheel and setuid, but put into its own gdmaint group. This still doesn't prevent people in that group from gaining root, though. Submitted by: Brock Tellier <btellier@usa.net> (gdc bug)
-rw-r--r--net/gated/Makefile2
1 files changed, 2 insertions, 0 deletions
diff --git a/net/gated/Makefile b/net/gated/Makefile
index cb479f30ec1..2dec6d37e7c 100644
--- a/net/gated/Makefile
+++ b/net/gated/Makefile
@@ -13,6 +13,8 @@ MASTER_SITES= ftp://ftp.gated.merit.edu/net-research/gated/
MAINTAINER= peter@FreeBSD.org
+BROKEN= Security hole (buffer overflow possibly yielding root)
+
ALL_TARGET= gated
MAN8= gated.8 ripquery.8 ospf_monitor.8 gdc.8