sshd doesn't log hostname into utmp correctly [resend]

Hajimu UMEMOTO ume at mahoroba.org
Wed Aug 21 01:05:45 EST 2002


Hi,

>>>>> On Tue, 20 Aug 2002 07:27:57 -0700
>>>>> Kevin Steves <kevin at atomicgears.com> said:

kevin> does this defeat utmp_len and verify_reverse_mapping?

kevin> http://www.freebsd.org/cgi/cvsweb.cgi/src/crypto/openssh/loginrec.c.diff?r1=1.1&r2=1.2

Ah yes, FreeBSD has some hack to store utmp entry by calling
realhostname_sa().  Sorry for my lacking of consideration around
FreeBSD hack.
In anyway, it is a potential problem that record_login() copies addr
just sizeof(struct sockaddr) regardless of actual size.  Please
consider to fix it by applying my previous patch.

Sincerely,

--
Hajimu UMEMOTO @ Internet Mutual Aid Society Yokohama, Japan
ume at mahoroba.org  ume at bisd.hitachi.co.jp  ume@{,jp.}FreeBSD.org
http://www.imasy.org/~ume/



More information about the openssh-unix-dev mailing list