freebsd-dev/contrib
Xin LI 3776abf91b MFC r205654:
The rmt client in GNU cpio could have a heap overflow when a malicious
remote tape service returns deliberately crafted packets containing
more data than requested.

Fix this by checking the returned amount of data and bail out when it
is more than what we requested.

PR:		gnu/145010
Submitted by:	naddy
Reviewed by:	imp
Security:	CVE-2010-0624
2010-03-25 20:07:30 +00:00
..
amd Remove build timestamps from the following files: 2009-07-11 22:30:37 +00:00
bc - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
bind9 MFC 202961: 2010-02-07 20:28:24 +00:00
binutils Push mips support into the tree. 2008-12-11 08:22:20 +00:00
bsnmp MFC r200063 2009-12-10 11:52:16 +00:00
bzip2 merge r196164: update & remove CVS-specific items. 2009-08-13 06:13:45 +00:00
com_err - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
cpio MFC r205654: 2010-03-25 20:07:30 +00:00
csup - Remove semicolon that should not have been there. 2009-06-12 16:37:53 +00:00
cvs - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
diff - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
ee MFC r199123: 2009-12-14 22:38:51 +00:00
expat MFC r200392: 2009-12-14 01:05:40 +00:00
file Merge vendor/file/dist@192348, bringing FILE 5.03 to 8-CURRENT. 2009-05-18 22:34:33 +00:00
gcc MFC 198344: 2010-01-20 15:13:38 +00:00
gcclibs - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
gdb gdb: make 'thread apply all bt' always work on all threads 2009-06-12 14:27:50 +00:00
gdtoa MFC r196916: 2009-09-10 11:27:07 +00:00
gnu-sort - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
gperf - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
groff MFC: Sync Groff with trunk except libulog addition. 2010-01-18 13:11:37 +00:00
ipfilter Fix a typo that causes the for loop to exit immediately. There's 2009-06-16 13:31:01 +00:00
less Update less to v436. This is considered as a bugfix release from vendor. 2009-07-29 09:20:32 +00:00
libbegemot - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
libf2c - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
libobjc - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
libpcap MFC 203052: 2010-02-26 00:54:47 +00:00
libreadline - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
libstdc++ - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
lukemftp - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
lukemftpd Prevent cross-site forgery attacks on lukemftpd(8) due to splitting 2009-01-07 20:17:55 +00:00
ncurses MFC r198490 2009-10-30 17:28:35 +00:00
netcat MFC r202640: 2010-02-02 00:32:15 +00:00
ngatm - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
ntp Fix BIND named(8) cache poisoning with DNSSEC validation. 2010-01-06 21:45:30 +00:00
nvi - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
one-true-awk Update to a 26-Nov-2009 release. 2010-01-15 14:20:01 +00:00
openbsm Import OpenBSM 1.1p2 from vendor branch to 8-CURRENT. This patch release 2009-08-02 10:27:54 +00:00
openpam merge r196164: update & remove CVS-specific items. 2009-08-13 06:13:45 +00:00
opie - Remove non-existing reference 2009-01-30 15:43:55 +00:00
pam_modules/pam_passwdqc - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
pf MFC r200930: 2010-01-23 00:32:19 +00:00
pnpinfo - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
sendmail MFC: Update FreeBSD information 2010-01-31 19:00:39 +00:00
smbfs Document the "-U" option. While it is not part of the 2009-01-22 08:29:39 +00:00
tcp_wrappers MFC: Allow comment in the middle of the line. 2010-03-25 02:14:04 +00:00
tcpdump correct IEEE80211_RADIOTAP_XCHANNEL to match system 2009-07-15 13:50:06 +00:00
tcsh MFC r197812: 2009-10-12 15:46:17 +00:00
telnet Rename all symbols in libmp(3) to mp_*, just like Solaris. 2009-02-26 21:43:15 +00:00
texinfo - Import the HEAD csup code which is the basis for the cvsmode work. 2008-10-19 08:41:10 +00:00
top MFC 196382: 2009-08-19 17:45:58 +00:00
traceroute MFC r196475: 2009-09-13 11:34:33 +00:00
wpa Add some notes and clarify a few sections: 2009-03-16 23:56:28 +00:00