aboutsummaryrefslogtreecommitdiff
path: root/contrib/cvs/Makefile.in
diff options
context:
space:
mode:
authorJacques Vidrine <nectar@FreeBSD.org>2004-01-21 16:27:56 +0000
committerJacques Vidrine <nectar@FreeBSD.org>2004-01-21 16:27:56 +0000
commitc8ae5f056296ca06d45a165f9c8588a777b19a89 (patch)
tree9496e7d6854aead54712d74c18df16c4466822de /contrib/cvs/Makefile.in
parent794bef18e711048a65f168af2fe57a60d766b685 (diff)
Incorporate two security fixes from later versions of CVS.
From the NEWS file of cvs 1.11.11: * pserver can no longer be configured to run as root via the $CVSROOT/CVSROOT/passwd file, so if your passwd file is compromised, it no longer leads directly to a root hack. Attempts to root will also be logged via the syslog. * Malformed module requests could cause the CVS server to attempt to create directories and possibly files at the root of the filesystem holding the CVS repository. Filesystem permissions usually prevent the creation of these misplaced directories, but nevertheless, the CVS server now rejects the malformed requests. Obtained from: ccvs.cvshome.org
Notes
Notes: svn path=/vendor/cvs/dist/; revision=124793
Diffstat (limited to 'contrib/cvs/Makefile.in')
0 files changed, 0 insertions, 0 deletions