From d3ecbb901935c309843d4d32e0c467e20eea8958 Mon Sep 17 00:00:00 2001 From: delphij Date: Tue, 28 Jul 2015 19:58:44 +0000 Subject: Fix patch(1) shell injection vulnerability. [SA-15:14] Fix resource exhaustion in TCP reassembly. [SA-15:15] Fix OpenSSH multiple vulnerabilities. [SA-15:16] --- usr.bin/patch/common.h | 6 ++---- 1 file changed, 2 insertions(+), 4 deletions(-) (limited to 'usr.bin/patch/common.h') diff --git a/usr.bin/patch/common.h b/usr.bin/patch/common.h index 8963c83..f33abcf 100644 --- a/usr.bin/patch/common.h +++ b/usr.bin/patch/common.h @@ -43,12 +43,10 @@ #define LINENUM_MAX LONG_MAX #define SCCSPREFIX "s." -#define GET "get -e %s" -#define SCCSDIFF "get -p %s | diff - %s >/dev/null" #define RCSSUFFIX ",v" -#define CHECKOUT "co -l %s" -#define RCSDIFF "rcsdiff %s > /dev/null" +#define CHECKOUT "/usr/bin/co" +#define RCSDIFF "/usr/bin/rcsdiff" #define ORIGEXT ".orig" #define REJEXT ".rej" -- cgit v1.1