diff options
| author | Chong Yidong | 2010-04-02 11:26:24 -0400 |
|---|---|---|
| committer | Chong Yidong | 2010-04-02 11:26:24 -0400 |
| commit | 51a91f9da64f25b68a1d3f752df6193c49c9b4fc (patch) | |
| tree | 6cfd08f009874dc66e3575a111829cc4297fb012 /lib-src/ChangeLog | |
| parent | a9ae306fe491f75b43a9c70c8909c138c36765d5 (diff) | |
| download | emacs-51a91f9da64f25b68a1d3f752df6193c49c9b4fc.tar.gz emacs-51a91f9da64f25b68a1d3f752df6193c49c9b4fc.zip | |
Fix permissions handling (CVE-2010-0825).
* movemail.c (main): Check return values of setuid. Avoid
possibility of symlink attack when movemail is setgid mail
(CVE-2010-0825).
Diffstat (limited to 'lib-src/ChangeLog')
| -rw-r--r-- | lib-src/ChangeLog | 6 |
1 files changed, 6 insertions, 0 deletions
diff --git a/lib-src/ChangeLog b/lib-src/ChangeLog index ad7ce6da3c2..11e603eab0f 100644 --- a/lib-src/ChangeLog +++ b/lib-src/ChangeLog | |||
| @@ -1,3 +1,9 @@ | |||
| 1 | 2010-04-02 Dan Rosenberg <dan.j.rosenberg@gmail.com> (tiny change) | ||
| 2 | |||
| 3 | * movemail.c (main): Check return values of setuid. Avoid | ||
| 4 | possibility of symlink attack when movemail is setgid mail | ||
| 5 | (CVE-2010-0825). | ||
| 6 | |||
| 1 | 2010-04-02 Dan Nicolaescu <dann@ics.uci.edu> | 7 | 2010-04-02 Dan Nicolaescu <dann@ics.uci.edu> |
| 2 | 8 | ||
| 3 | Remove extern errno declarations. | 9 | Remove extern errno declarations. |