Subject: Re: bin/18840
To: None <christos@netbsd.org, gnats-admin@netbsd.org,>
From: Frederick Bruckman <fredb@immanent.net>
List: netbsd-bugs
Date: 04/24/2005 20:41:02
The following reply was made to PR bin/18840; it has been noted by GNATS.
From: Frederick Bruckman <fredb@immanent.net>
To: christos@netbsd.org
Cc: netbsd-bugs@netbsd.org, gnats-bugs@netbsd.org
Subject: Re: bin/18840
Date: Sun, 24 Apr 2005 15:40:39 -0500 (CDT)
On Sun, 24 Apr 2005 christos@netbsd.org wrote:
> Synopsis: Fix for PR/18663 incomplete (pax symlink handling)
>
> State-Changed-From-To: open->feedback
> State-Changed-By: christos@netbsd.org
> State-Changed-When: Sun, 24 Apr 2005 00:25:31 -0400
> State-Changed-Why:
> problem should be fixed
Yes, thank you.
I don't have access to any hosts running current today, but I did
verify that the exploit I described in the PR is blocked, after
pulling up the changes in the message that attached to the PR, to
netbsd-2-0. (src/bin/pax/ar_io.c,v1.42 is a prerequisite for them,
by the way.)
Frederick