From: Dave H. <hel...@us...> - 2012-07-29 22:41:19
|
Update of /cvsroot/sblim/sfcb In directory vz-cvs-3.sog:/tmp/cvs-serv19626 Modified Files: ChangeLog NEWS sfcb.init-none.in sfcb.init-redhat.in sfcb.init-suse.in Log Message: Fixed 3541554: insecure LD_LIBRARY_PATH usage Index: sfcb.init-suse.in =================================================================== RCS file: /cvsroot/sblim/sfcb/sfcb.init-suse.in,v retrieving revision 1.3 retrieving revision 1.4 diff -u -d -r1.3 -r1.4 --- sfcb.init-suse.in 28 Jul 2005 08:09:38 -0000 1.3 +++ sfcb.init-suse.in 29 Jul 2012 22:41:16 -0000 1.4 @@ -15,10 +15,10 @@ echo $PATH | grep -q @sbindir@ ||PATH=@sbindir@:$PATH -if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv @libdir@ +if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv '@libdir@[/]*\($\|[:]\)' then - LD_LIBRARY_PATH=@libdir@:$LD_LIBRARY_PATH - export LD_LIBRARY_PATH + LD_LIBRARY_PATH=@libdir@${LD_LIBRARY_PATH:+:$LD_LIBRARY_PATH} + export LD_LIBRARY_PATH fi start() { Index: sfcb.init-none.in =================================================================== RCS file: /cvsroot/sblim/sfcb/sfcb.init-none.in,v retrieving revision 1.2 retrieving revision 1.3 diff -u -d -r1.2 -r1.3 --- sfcb.init-none.in 13 Jun 2005 12:50:33 -0000 1.2 +++ sfcb.init-none.in 29 Jul 2012 22:41:16 -0000 1.3 @@ -6,10 +6,10 @@ echo $PATH | grep -q @sbindir@ ||PATH=@sbindir@:$PATH -if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv @libdir@ +if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv '@libdir@[/]*\($\|[:]\)' then - LD_LIBRARY_PATH=@libdir@:$LD_LIBRARY_PATH - export LD_LIBRARY_PATH + LD_LIBRARY_PATH=@libdir@${LD_LIBRARY_PATH:+:$LD_LIBRARY_PATH} + export LD_LIBRARY_PATH fi start() { Index: sfcb.init-redhat.in =================================================================== RCS file: /cvsroot/sblim/sfcb/sfcb.init-redhat.in,v retrieving revision 1.2 retrieving revision 1.3 diff -u -d -r1.2 -r1.3 --- sfcb.init-redhat.in 13 Jun 2005 12:50:33 -0000 1.2 +++ sfcb.init-redhat.in 29 Jul 2012 22:41:16 -0000 1.3 @@ -15,10 +15,10 @@ echo $PATH | grep -q @sbindir@ ||PATH=@sbindir@:$PATH -if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv @libdir@ +if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv '@libdir@[/]*\($\|[:]\)' then - LD_LIBRARY_PATH=@libdir@:$LD_LIBRARY_PATH - export LD_LIBRARY_PATH + LD_LIBRARY_PATH=@libdir@${LD_LIBRARY_PATH:+:$LD_LIBRARY_PATH} + export LD_LIBRARY_PATH fi start() { Index: ChangeLog =================================================================== RCS file: /cvsroot/sblim/sfcb/ChangeLog,v retrieving revision 1.795 retrieving revision 1.796 diff -u -d -r1.795 -r1.796 --- ChangeLog 20 Jul 2012 14:10:43 -0000 1.795 +++ ChangeLog 29 Jul 2012 22:41:16 -0000 1.796 @@ -1,3 +1,8 @@ +2012-07-29 Dave Heller <hel...@us...> + + * sfcb.init-none.in, sfcb.init-redhat.in, sfcb.init-suse.in: + [ 3541554 ] insecure LD_LIBRARY_PATH usage + 2012-07-20 Dave Heller <hel...@us...> * classProviderGz.c: Index: NEWS =================================================================== RCS file: /cvsroot/sblim/sfcb/NEWS,v retrieving revision 1.710 retrieving revision 1.711 diff -u -d -r1.710 -r1.711 --- NEWS 20 Jul 2012 14:10:43 -0000 1.710 +++ NEWS 29 Jul 2012 22:41:16 -0000 1.711 @@ -11,6 +11,7 @@ - 1901737 Memory leak in internalProvider.c - 3539006 Possible indication deadlock - 3527714 Every other EnumerateClasses fails +- 3541554 insecure LD_LIBRARY_PATH usage Changes in 1.3.15 ================= |