Page MenuHomeFreeBSD

shells/rssh: Document recent vulnerabilities
ClosedPublic

Authored by kai on Mar 5 2019, 10:22 PM.
Tags
None
Referenced Files
Unknown Object (File)
Sat, Apr 4, 4:49 PM
Unknown Object (File)
Sat, Apr 4, 12:11 PM
Unknown Object (File)
Fri, Mar 27, 5:23 AM
Unknown Object (File)
Fri, Mar 27, 1:59 AM
Unknown Object (File)
Sun, Mar 22, 2:22 PM
Unknown Object (File)
Sat, Mar 14, 3:14 PM
Unknown Object (File)
Thu, Mar 12, 9:56 AM
Unknown Object (File)
Mon, Mar 9, 12:29 PM
Subscribers
None

Details

Summary

Document the recent vulnerabilities that were discovered during some research related to PR 235121.

An updated version with security fixes for shells/rssh will follow shortly after this review.

Test Plan
  • make validate -> OK
  • pkg audit -f vuln.xml rssh-2.3.4_1 vs. pkg audit -f vuln.xml rssh-2.3.4_2 -> OK

Diff Detail

Lint
No Lint Coverage
Unit
No Test Coverage
Build Status
Buildable 22907
Build 21993: arc lint + arc unit