From 4695eaef2e4de9b318f9a035f8fd460637b02976 Mon Sep 17 00:00:00 2001 From: "Chris D. Faulhaber" Date: Wed, 19 Dec 2001 22:45:28 +0000 Subject: Drop setgid kmem privs before executing external programs. Reported by: Christer Oberg --- net/wmnet2/Makefile | 1 + net/wmnet2/files/patch-ac | 10 ++++++++++ 2 files changed, 11 insertions(+) create mode 100644 net/wmnet2/files/patch-ac (limited to 'net') diff --git a/net/wmnet2/Makefile b/net/wmnet2/Makefile index 854717c273d0..cfe28b7df718 100644 --- a/net/wmnet2/Makefile +++ b/net/wmnet2/Makefile @@ -7,6 +7,7 @@ PORTNAME= wmnet2 PORTVERSION= 1.06 +PORTREVISION= 1 CATEGORIES= net MASTER_SITES= http://www.digitalkaos.net/linux/wmnet/download/ DISTNAME= wmnet-${PORTVERSION} diff --git a/net/wmnet2/files/patch-ac b/net/wmnet2/files/patch-ac new file mode 100644 index 000000000000..6f1bac1ac955 --- /dev/null +++ b/net/wmnet2/files/patch-ac @@ -0,0 +1,10 @@ +--- wmnet.c.orig Thu May 4 21:01:14 2000 ++++ wmnet.c Wed Dec 19 17:43:40 2001 +@@ -732,6 +732,7 @@ + case ButtonPress: + if(event.xbutton.button == Button1 && click_command != NULL) { + if (fork() == 0) { ++ setgid(getgid()); + execl("/bin/sh", "sh", "-c", click_command, NULL); + perror("wmnet: execl()"); + exit(15); -- cgit v1.2.3