[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: X Strike Force SVN commit: rev 248 - in trunk/debian: . patches



In article <2YbC.65R.11@gated-at.bofh.it> you wrote:
> Author: branden
> Date: 2003-06-26 13:01:11 -0500 (Thu, 26 Jun 2003)
> New Revision: 248

> Added:
>    trunk/debian/patches/093_SECURITY_xterm_window_title_reporting_fix.diff
>    trunk/debian/patches/094_SECURITY_xterm_DEC_UDK_sequence_DoS_fix.diff
> Modified:
>    trunk/debian/changelog
> Log:
> add two security patches to xterm

> debian/patches/093_SECURITY_xterm_window_title_reporting_fix.diff:
>   SECURITY: disable window title reporting to work around potentially
>   malicious text being spewed to terminal window
>   <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0063>

For #177, I assume you did see the allowWindowOps resource.

-- 
Thomas E. Dickey <dickey@radix.net> <dickey@herndon4.his.com>
http://dickey.his.com
ftp://dickey.his.com



Reply to: