<feed xmlns='http://www.w3.org/2005/Atom'>
<title>src/secure, branch releng/4.5</title>
<subtitle>FreeBSD source tree</subtitle>
<id>https://cgit-dev.freebsd.org/src/atom?h=releng%2F4.5</id>
<link rel='self' href='https://cgit-dev.freebsd.org/src/atom?h=releng%2F4.5'/>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/'/>
<updated>2002-07-31T14:05:34Z</updated>
<entry>
<title>MFC: OpenSSL 0.9.6e</title>
<updated>2002-07-31T14:05:34Z</updated>
<author>
<name>Jacques Vidrine</name>
<email>nectar@FreeBSD.org</email>
</author>
<published>2002-07-31T14:05:34Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=4fe386b7feefe15cb4a8ab6f99551c119e397175'/>
<id>urn:sha1:4fe386b7feefe15cb4a8ab6f99551c119e397175</id>
<content type='text'>
</content>
</entry>
<entry>
<title>MFC: Reduce gratuitous diffs to -CURRENT.</title>
<updated>2001-12-14T15:23:50Z</updated>
<author>
<name>Ruslan Ermilov</name>
<email>ru@FreeBSD.org</email>
</author>
<published>2001-12-14T15:23:50Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=ee7fd94b0a264adf078c34f8065f31a1608cccf1'/>
<id>urn:sha1:ee7fd94b0a264adf078c34f8065f31a1608cccf1</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Connect sftp and ssh-keyscan.</title>
<updated>2001-10-08T14:11:00Z</updated>
<author>
<name>Brian Feldman</name>
<email>green@FreeBSD.org</email>
</author>
<published>2001-10-08T14:11:00Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=4f182b7dec33cde3624a74891c180c6e019ca385'/>
<id>urn:sha1:4f182b7dec33cde3624a74891c180c6e019ca385</id>
<content type='text'>
</content>
</entry>
<entry>
<title>MFC: zap a stale directory</title>
<updated>2001-09-30T23:04:35Z</updated>
<author>
<name>Kris Kennaway</name>
<email>kris@FreeBSD.org</email>
</author>
<published>2001-09-30T23:04:35Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=97b539880798c5941a8fec5467531533b105dd9a'/>
<id>urn:sha1:97b539880798c5941a8fec5467531533b105dd9a</id>
<content type='text'>
</content>
</entry>
<entry>
<title>MFC: OpenSSH 2.9</title>
<updated>2001-09-28T01:33:53Z</updated>
<author>
<name>Brian Feldman</name>
<email>green@FreeBSD.org</email>
</author>
<published>2001-09-28T01:33:53Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=7b974c5b2f8afd9b94cc4e81337b3a596d1c485d'/>
<id>urn:sha1:7b974c5b2f8afd9b94cc4e81337b3a596d1c485d</id>
<content type='text'>
The only difference between this and what's in -CURRENT is that the
default /etc/ssh/ssh_config sets "Protocol 1,2" for all hosts.  This can
be overrided entirely in user ~/.ssh/config files, as always.
</content>
</entry>
<entry>
<title>MFC: markup and misc fixes.</title>
<updated>2001-08-16T10:34:30Z</updated>
<author>
<name>Ruslan Ermilov</name>
<email>ru@FreeBSD.org</email>
</author>
<published>2001-08-16T10:34:30Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=259a82f06c8937460572692919493d85d66c60a7'/>
<id>urn:sha1:259a82f06c8937460572692919493d85d66c60a7</id>
<content type='text'>
Approved by:	re
</content>
</entry>
<entry>
<title>MFC: this file is obsolete, libcrypt is unified</title>
<updated>2001-07-16T03:30:08Z</updated>
<author>
<name>Peter Wemm</name>
<email>peter@FreeBSD.org</email>
</author>
<published>2001-07-16T03:30:08Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=785940074db347bfe6d0b4c31a74f2c1188c0ac6'/>
<id>urn:sha1:785940074db347bfe6d0b4c31a74f2c1188c0ac6</id>
<content type='text'>
</content>
</entry>
<entry>
<title>MFC: Update to OpenSSL 0.9.6a</title>
<updated>2001-07-04T23:24:42Z</updated>
<author>
<name>Kris Kennaway</name>
<email>kris@FreeBSD.org</email>
</author>
<published>2001-07-04T23:24:42Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=2d9194bc64db3221589398c7c3d3224140636069'/>
<id>urn:sha1:2d9194bc64db3221589398c7c3d3224140636069</id>
<content type='text'>
</content>
</entry>
<entry>
<title>MFC: Security fixes to SRA telnet:</title>
<updated>2001-05-30T20:46:48Z</updated>
<author>
<name>Nick Sayer</name>
<email>nsayer@FreeBSD.org</email>
</author>
<published>2001-05-30T20:46:48Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=9c903a8b764a8b16c4208020b6ae98bff6d35e7e'/>
<id>urn:sha1:9c903a8b764a8b16c4208020b6ae98bff6d35e7e</id>
<content type='text'>
1. Add PAM support to SRA. Includes adding telnetd to /etc/pam.conf and
-lpam to the secure telnetd/telnet Makefiles.

2. Insist on secure tty before allowing root login. This should be
replaced with a suitable PAM module at some point.

3. Make sure not to overflow the xuser/xpass buffers. Since they were
malloc()ed (check for malloc failure and abort, too, btw) this was
likely not exploitable, but it is best to be safe.

Submitted by: kris
Review timeout: security-officer
</content>
</entry>
<entry>
<title>MFC: Blowfish password hashing scheme (From OpenBSD) and remove the dlsym()</title>
<updated>2001-05-24T12:20:03Z</updated>
<author>
<name>Mark Murray</name>
<email>markm@FreeBSD.org</email>
</author>
<published>2001-05-24T12:20:03Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=16063c03bdb0a0c190841aadae10a6b874f44a42'/>
<id>urn:sha1:16063c03bdb0a0c190841aadae10a6b874f44a42</id>
<content type='text'>
hack.
</content>
</entry>
</feed>
