Package: kfreebsd-10
Version: 10.0~svn257123-1
Severity: important

See:

http://svnweb.freebsd.org/base?view=revision&revision=243023

Given that MAXLOGNAME is mirrored in <bits/param.h> and available to
userland, this opens a few questions:

- Does the new ABI create any security concerns? E.g. buffer overflows
in userland.

- Should we update MAXLOGNAME in glibc? Would we need wrapper code in
order to preserve compatibility with 9.x in case we did that?

- Do we need to patch the kernel in order to preserve backward
compatibility with old userland? (e.g. Wheezy chroot)

-- 
Robert Millan


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to