Love Hörnquist Åstrand 02805ed17d From FreeBSD:
Correct a pair of buffer overflows in the telnet(1) command:

   (CAN-2005-0468) A heap buffer overflow in env_opt_add() and related
   functions.

   (CAN-2005-0469) A global uninitialized data section buffer overflow in
   slc_add_reply() and related functions.

  As a result of these vulnerabilities, it may be possible for a malicious
  telnet server or active network attacker to cause telnet(1) to execute
  arbitrary code with the privileges of the user running it.

  Security: CAN-2005-0468, CAN-2005-0469
  Security: FreeBSD-SA-05:01.telnet
  Security: http://www.idefense.com/application/poi/display?id=220&type=vulnerabilities
  Security: http://www.idefense.com/application/poi/display?id=221&type=vulnerabilities

  These fixes are based in part on patches
  Submitted by:   Solar Designer <solar@openwall.com>


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@14693 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-03-28 22:43:34 +00:00
x
2004-09-29 12:52:07 +00:00
2005-03-28 22:43:34 +00:00
x
2005-03-15 23:19:17 +00:00
2005-03-16 13:36:31 +00:00
2001-08-08 15:48:37 +00:00
(c)
2005-03-23 12:36:27 +00:00
2005-03-28 19:20:16 +00:00
2004-05-26 11:02:22 +00:00
1997-09-29 13:24:51 +00:00
2004-02-12 14:19:16 +00:00
x
2005-03-28 15:06:39 +00:00
2000-06-07 10:01:25 +00:00
2002-08-21 13:29:08 +00:00
2003-03-25 12:52:46 +00:00
2004-01-18 22:48:48 +00:00
2005-01-01 14:50:47 +00:00
2005-02-03 08:19:13 +00:00
2004-05-12 15:24:08 +00:00
1998-08-14 12:05:21 +00:00
2001-06-23 22:27:51 +00:00
2003-10-14 12:08:10 +00:00
2005-02-03 08:18:22 +00:00
2005-01-05 15:08:28 +00:00
2000-07-27 02:33:54 +00:00
x
2004-01-05 13:32:01 +00:00
2003-09-20 18:49:01 +00:00
2001-08-08 12:45:50 +00:00

$Id$

Heimdal is a Kerberos 5 implementation.

Please see the manual in doc, by default installed in
/usr/heimdal/info/heimdal.info for information on how to install.
There are also briefer man pages for most of the commands.

Bug reports and bugs are appreciated, see more under Bug reports in
the manual on how we prefer them.

For more information see the web-page at
<http://www.pdc.kth.se/heimdal/> or the mailing lists:

heimdal-announce@sics.se	low-volume announcement
heimdal-discuss@sics.se		high-volume discussion

send a mail to heimdal-announce-request@sics.se and
heimdal-discuss-request@sics.se respectively to subscribe.
Languages
C 92.1%
Roff 2.8%
Shell 2.3%
Makefile 0.7%
M4 0.5%
Other 1.4%