[prev in list] [next in list] [prev in thread] [next in thread] 

List:       kde-commits
Subject:    kdesecurity/review
From:       Waldo Bastian <bastian () kde ! org>
Date:       2002-12-08 15:52:59
[Download RAW message or body]

CVS commit by waba: 

Update


  M +3 -1      kshellprocess.usage   1.9
  M +1 -0      popen.usage   1.12
  M +12 -0     strcpy.usage   1.3


--- kdesecurity/review/kshellprocess.usage   1.9:
@@ -250,4 +250,6 @@ dirk: debug code
 dirk: buffer overflow, on the local site though
 # ./kdepim/kpilot/conduits/expense/expense.cc:465:      \
shproc->start(KShellProcess::Block, KShellProcess::NoCommunication); +waba: strangely \
quoted sql command +waba: fixed in CVS HEAD
 # ./kdesdk/cervisia/logdlg.cpp:236:    cmdline += KShellProcess::quote(filename);
 dirk: safe
--- kdesecurity/review/popen.usage   1.12:
@@ -208,4 +208,5 @@ waba: test code
 waba: sendmailCmd read from config
 # ./kdepim/kpilot/kpilot/conduitSetup.cc:495:           conduitpipe = \
popen(currentConduit.local8Bit(), "r"); +waba: safe
 # ./kdepim/korganizer/koprefsdialog.cpp:222:    if (f = popen(buf, "r"))
 waba: Solaris only, looks harmless


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic