Upcoming OpenSSH vulnerability

Kevin Steves kevin at atomicgears.com
Thu Jun 27 03:32:47 EST 2002


On Wed, Jun 26, 2002 at 04:18:48AM -0500, Phil Howard wrote:
> How long has the opportunity to port privilege separation been there?

March.  Big sync on 3/21 followed by stuff to get things somewhat
working on a few platforms on 3/22.

20020322
 - (stevesk) HAVE_ACCRIGHTS_IN_MSGHDR configure support
 - (stevesk) [monitor.c monitor_wrap.c] #ifdef HAVE_PW_CLASS_IN_PASSWD
 - (stevesk) configure and cpp __FUNCTION__ gymnastics to handle nielsisms
 - (stevesk) [monitor_fdpass.c] support for access rights style file
   descriptor passing
 - (stevesk) [auth2.c] merge cleanup/sync
 - (stevesk) [defines.h] hp-ux 11 has ancillary data style fd passing, but
   is missing CMSG_LEN() and CMSG_SPACE() macros.
 - (stevesk) [defines.h] #define MAP_ANON MAP_ANONYMOUS for HP-UX; other
   platforms may need this--I'm not sure.  mmap() issues will need to be
   addressed further.
 - (tim) [cipher.c] fix problem with OpenBSD sync
 - (stevesk) [LICENCE] OpenBSD sync

20020321
 - (bal) OpenBSD CVS Sync



More information about the openssh-unix-dev mailing list