bug in scp (OpenSSH)

Roman Drahtmueller draht at suse.de
Fri Aug 31 20:20:23 EST 2001


> From: Markus Friedl <markus at openbsd.org>
[...]
> > > can you please try this:
> >
> > well, this "fixes" (works around) the passwd leakage, but nothing more.
> >
> > it still copies the file with wrong "contents" (all zeros now) and still
> > doesn't handle the I/O error correctly (which IMHO means it should
> > stop writing/copying like cp(1) and most other tools do).
>
> this is the way rcp protocol works.

Are you serious that you want to keep a bug because "this is how the rcp
protocol works"? It is clearly flawed.

Is it necessary to make full quotes for a single sentence?

Roman.
-- 
 -                                                                      -
| Roman Drahtmüller      <draht at suse.de> //          "Caution: Cape does |
  SuSE GmbH - Security           Phone: //       not enable user to fly."
| Nürnberg, Germany     +49-911-740530 // (Batman Costume warning label) |
 -                                                                      -




More information about the openssh-unix-dev mailing list