1. 19 Jun, 2007 2 commits
  2. 18 Jun, 2007 1 commit
  3. 15 Jun, 2007 1 commit
  4. 14 Jun, 2007 1 commit
  5. 13 Jun, 2007 1 commit
  6. 12 Jun, 2007 1 commit
    • cmiller@zippy.cornsilk.net's avatar
      Bug#28984: crasher on connect with out of range password length in \ · 4c9af559
      cmiller@zippy.cornsilk.net authored
      	protocol
      
      Fixed duplicated code, same as last commit.
      
      One could send a malformed packet that caused the server to SEGV.  In 
      recent versions of the password protocol, the client tells the server 
      what length the ciphertext is (almost always 20).  If that length was
      large enough to overflow a signed char, then the number would jump to 
      very large after being casted to unsigned int.
      
      Instead, cast the *passwd char to uchar.
      4c9af559
  7. 11 Jun, 2007 1 commit
  8. 08 Jun, 2007 2 commits
  9. 07 Jun, 2007 3 commits
  10. 06 Jun, 2007 6 commits
  11. 04 Jun, 2007 2 commits
  12. 01 Jun, 2007 4 commits
  13. 30 May, 2007 2 commits
  14. 23 May, 2007 3 commits
  15. 22 May, 2007 1 commit
  16. 21 May, 2007 2 commits
  17. 18 May, 2007 7 commits