[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#729746: MAXLOGNAME increased (17 -> 32)



Package: kfreebsd-10
Version: 10.0~svn257123-1
Severity: important

See:

http://svnweb.freebsd.org/base?view=revision&revision=243023

Given that MAXLOGNAME is mirrored in <bits/param.h> and available to
userland, this opens a few questions:

- Does the new ABI create any security concerns? E.g. buffer overflows
in userland.

- Should we update MAXLOGNAME in glibc? Would we need wrapper code in
order to preserve compatibility with 9.x in case we did that?

- Do we need to patch the kernel in order to preserve backward
compatibility with old userland? (e.g. Wheezy chroot)

-- 
Robert Millan


Reply to: