| Commit message (Collapse) | Author | Age | Files | Lines |
... | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
"mbuf" as a C string when using the pop3 s_client feature. This causes
a segmentation fault with malloc.conf option "J" set when BIO_printf()
runs off the end of the buffer. The following patch fixes PR 6282
from Matthew Haub (asked to submit upstream), ok djm
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
"In TLS connections, certain incorrectly formatted records can cause an OpenSSL
client or server to crash due to a read attempt at NULL."
http://openssl.org/news/secadv_20100324.txt
ok deraadt@ djm@ sthen@
|
| | | |
| | | |
| | | |
| | | | |
- small tweak while here
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
excepting the tbl(1) pages, which are less than twenty.
"commit the diff that enables it, now" deraadt@
|
| | | | |
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
teach people bad habits!
ok krw@, jmc@, dlg@, thib@
|
| | | |
| | | |
| | | |
| | | | |
ok millert@
|
| | | |
| | | |
| | | |
| | | |
| | | | |
*) Always check bn_wexpend() return values for failure. (CVE-2009-3245)
[Martin Olsson, Neel Mehta]
|
| | | |
| | | |
| | | |
| | | |
| | | | |
after the diff was written, I made it similar to the freebsd fix of
the same code; pr6287 ok millert@ guenther@
|
| | | | |
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
files or directories when applicable.
The inspiration and name of MACHINE_CPU come from NetBSD, although the way to
provide it to Makefiles is completely different.
ok kettenis@
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
"Modify compression code so it avoids using ex_data free functions.
This stops applications that call CRYPTO_free_all_ex_data()
prematurely leaking memory."
looks ok to markus@
|
| | | | |
|
| | | |
| | | |
| | | |
| | | | |
extra safeguard (FGJ). Idea from deraadt@; ok deraadt@ dlg@
|
| | | | |
|
| | | | |
|
| | | |
| | | |
| | | |
| | | | |
completes the changes from Oct 22.
|
| | | |
| | | |
| | | |
| | | |
| | | | |
arc4random() is slow, but it induces getpid() calls; also saves a
bit on stirring efforts
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
doesn't test it, so factor out the two places that test it into a
routine and do the refreshing there. With this, arch4random_buf()
doesn't trigger superfluous calls to getpid() when filling large
buffers.
ok deraadt@, "looks nicer indeed" otto@
|
| | | | |
|
| | | |
| | | |
| | | |
| | | | |
actual kernel page size.
|
| | | |
| | | |
| | | |
| | | | |
from trhodes@freebsd, r200095;
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
macros for them. Avoids walking the lists and greatly enhances speed
of freeing chunks in reverse or random order at the cost of a little
space. Suggested by Fabien Romano and Jonathan Armani; ok djm@
|
| | | |
| | | |
| | | |
| | | | |
from Fabien Romano and Jonathan Armani
|
| | | |
| | | |
| | | |
| | | | |
Armani
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
- wrap with #ifndef NO_LOG_BAD_DNS_RESPONSES libc code that uses
p_class() and p_type() for diagnostics, then add that define to
libstub to avoid pulling in res_debug_syms.o
- split rcmd() and ruserok() into separate files, as nothing uses both
- split readdir_r() to its own file
- split syslog_r() from syslog(), as the latter needs localtime(); many
binaries no longer need to pull in all the time code after this; switch
from usleep() to nanosleep() while we're at it
(The profit of analysis of -Wl,-M,--cref output)
Chops 888kB from /bin and /sbin on i386
ok deraadt@, miod@
|
| | | |
| | | |
| | | |
| | | | |
openssl 0.9.8l; crank minor version; ok djm@ deraadt@; initially from jsg@
|
| | | |
| | | |
| | | |
| | | |
| | | | |
noticed by Jonathan Armani & Fabien Romano
ugh+ok otto@
|
| | | | |
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
unmaintainable). these days, people use source. these id's do not provide
any benefit, and do hurt the small install media
(the 33,000 line diff is essentially mechanical)
ok with the idea millert, ok dms
|
| | | |
| | | |
| | | |
| | | | |
Okay deraadt@, otto@.
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
ecvt, fcvt, gcvt, *printf, strtof, strtod, strtold act per ieee
1003.1. after these massive changes, remove unused files which
would not work now. reported by Maksymilian Arciemowicz; ok theo
|
| | | |
| | | |
| | | |
| | | |
| | | | |
found by Guillaume Protet (guillaume dot protet at mortheres dot info)
while testing bzr update. deraadt@ ok
|
| | | | |
|
| | | |
| | | |
| | | |
| | | |
| | | | |
specified in hint or hints is NULL.
claudio@ ok
|
| | | | |
|
| | | |
| | | |
| | | |
| | | | |
beck@ ok
|
| | | | |
|
| | | |
| | | |
| | | |
| | | | |
ok tedu@ deraadt@ krw@
|
| | | | |
|
| | | |
| | | |
| | | |
| | | |
| | | | |
to u_int32_t to do integer math with (in a situation where that is legit)
ok otto millert
|
| | | |
| | | |
| | | |
| | | | |
ok otto@
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
now doing.
ok deraadt@
|
| | | |
| | | |
| | | |
| | | |
| | | | |
Someone may have passed a read-only string to putenv() (I'm looking
at you cron!).
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
PF_UNSPEC queries are made. While there change the default from inet6
first then inet4 to inet4 first then inet6, this prevents the many
people with IPv4 only connectivity from constantly trying to contact
IPv6 addresses, and also unbreaks many ports who don't use getaddrinfo
right.
ok deraadt@, plenty of cheering in the room wrt the idea, not loud
enough complaining from the v6 crowd.
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
standard explicitly disallows passing setenv a name with a '=' in
it but historic BSD behavior is to allow this but to ignore the '='
and anything after it.
|
| | | |
| | | |
| | | |
| | | | |
hint from claudio@, ok millert@
|
| | | |
| | | |
| | | |
| | | | |
ok beck@
|
| | | | |
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
argument if the argument is deemed to be optional ('::').
feedback and ok jmc@ and millert@
|