summaryrefslogtreecommitdiff
path: root/devel/arduino-builder
diff options
context:
space:
mode:
authorBryan Drewery <bdrewery@FreeBSD.org>2016-10-24 22:52:17 +0000
committerBryan Drewery <bdrewery@FreeBSD.org>2016-10-24 22:52:17 +0000
commitf696ba7f44e6d086c8d77b7294511d4c199591f3 (patch)
tree83c33ab4ad240bd498a2bf28a218a073584503e8 /devel/arduino-builder
parentUpgrade to 1.10.0. (diff)
Unregister the KEXINIT handler after message has been received. Otherwise an unauthenticated peer can repeat the KEXINIT and cause allocation of up to 128MB -- until the connection is closed. Reported by shilei-c at 360.cn Security: CVE-2016-8858
Notes
Notes: svn path=/head/; revision=424592
Diffstat (limited to 'devel/arduino-builder')
0 files changed, 0 insertions, 0 deletions