From 33e059c87ec6c39e86e6adecdd5ed6dd3f5a8c50 Mon Sep 17 00:00:00 2001 From: Jacques Vidrine Date: Tue, 25 Mar 2003 13:01:48 +0000 Subject: Mark FORBIDDEN. This port installs set-user-id executables which call system() without sanitizing the environment. It is trivially exploitable for root privileges. Reported by: Niels Heinen --- chinese/chitex/Makefile | 1 + 1 file changed, 1 insertion(+) (limited to 'chinese') diff --git a/chinese/chitex/Makefile b/chinese/chitex/Makefile index 7af2603f142d..d8c0999ee9a1 100644 --- a/chinese/chitex/Makefile +++ b/chinese/chitex/Makefile @@ -27,6 +27,7 @@ DIST_SUBDIR= chitex WRKSRC= ${WRKDIR}/chitex612 NO_BUILD= YES NO_CDROM= 'Do not sell for profit.' +FORBIDDEN= 'Installs setuid root binaries that use system() unsafely' MAN1= awka.1 -- cgit v1.2.3