*BSD user-ppp local root (when conditions permit)

Dan Lukes dan at obluda.cz
Sun Mar 2 01:25:11 UTC 2008


Eygene Ryabinkin napsal/wrote, On 03/02/08 00:06:
>> 1. Run ppp
>> 2. type the following (or atleat some variation of)
...

> Yes, good catch: looks like stack-based buffer overflow

> Could you please test the following rough patch

It seems you are going to cut of part of line silently.

IMHO - the line shall be rejected as invalid at all or warning needs to 
be issued at least ...

Someone may create so long line (unintentionally), it will not work for 
him with no hint why - it's not so polite ...

				Dan


More information about the freebsd-security mailing list