Log Message: Fix for CVE-2011-4862 from FreeBSD When an encryption key is supplied via the TELNET protocol, its length is not validated before the key is copied into a fixed-size buffer. This is a remote root exploit that is being actively exploited in the wild.
Revision | Action | file |
1.4 | modify | pkgsrc/security/mit-krb5-appl/Makefile |
1.4 | modify | pkgsrc/security/mit-krb5-appl/distinfo |
1.1 | add | pkgsrc/security/mit-krb5-appl/patches/patch-telnet_libtelnet_encrypt.c |