|
From: Dave H. <hel...@us...> - 2012-07-29 22:41:19
|
Update of /cvsroot/sblim/sfcb
In directory vz-cvs-3.sog:/tmp/cvs-serv19626
Modified Files:
ChangeLog NEWS sfcb.init-none.in sfcb.init-redhat.in
sfcb.init-suse.in
Log Message:
Fixed 3541554: insecure LD_LIBRARY_PATH usage
Index: sfcb.init-suse.in
===================================================================
RCS file: /cvsroot/sblim/sfcb/sfcb.init-suse.in,v
retrieving revision 1.3
retrieving revision 1.4
diff -u -d -r1.3 -r1.4
--- sfcb.init-suse.in 28 Jul 2005 08:09:38 -0000 1.3
+++ sfcb.init-suse.in 29 Jul 2012 22:41:16 -0000 1.4
@@ -15,10 +15,10 @@
echo $PATH | grep -q @sbindir@ ||PATH=@sbindir@:$PATH
-if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv @libdir@
+if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv '@libdir@[/]*\($\|[:]\)'
then
- LD_LIBRARY_PATH=@libdir@:$LD_LIBRARY_PATH
- export LD_LIBRARY_PATH
+ LD_LIBRARY_PATH=@libdir@${LD_LIBRARY_PATH:+:$LD_LIBRARY_PATH}
+ export LD_LIBRARY_PATH
fi
start() {
Index: sfcb.init-none.in
===================================================================
RCS file: /cvsroot/sblim/sfcb/sfcb.init-none.in,v
retrieving revision 1.2
retrieving revision 1.3
diff -u -d -r1.2 -r1.3
--- sfcb.init-none.in 13 Jun 2005 12:50:33 -0000 1.2
+++ sfcb.init-none.in 29 Jul 2012 22:41:16 -0000 1.3
@@ -6,10 +6,10 @@
echo $PATH | grep -q @sbindir@ ||PATH=@sbindir@:$PATH
-if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv @libdir@
+if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv '@libdir@[/]*\($\|[:]\)'
then
- LD_LIBRARY_PATH=@libdir@:$LD_LIBRARY_PATH
- export LD_LIBRARY_PATH
+ LD_LIBRARY_PATH=@libdir@${LD_LIBRARY_PATH:+:$LD_LIBRARY_PATH}
+ export LD_LIBRARY_PATH
fi
start() {
Index: sfcb.init-redhat.in
===================================================================
RCS file: /cvsroot/sblim/sfcb/sfcb.init-redhat.in,v
retrieving revision 1.2
retrieving revision 1.3
diff -u -d -r1.2 -r1.3
--- sfcb.init-redhat.in 13 Jun 2005 12:50:33 -0000 1.2
+++ sfcb.init-redhat.in 29 Jul 2012 22:41:16 -0000 1.3
@@ -15,10 +15,10 @@
echo $PATH | grep -q @sbindir@ ||PATH=@sbindir@:$PATH
-if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv @libdir@
+if [ -z "$LD_LIBRARY_PATH" ] || echo $LD_LIBRARY_PATH | grep -qv '@libdir@[/]*\($\|[:]\)'
then
- LD_LIBRARY_PATH=@libdir@:$LD_LIBRARY_PATH
- export LD_LIBRARY_PATH
+ LD_LIBRARY_PATH=@libdir@${LD_LIBRARY_PATH:+:$LD_LIBRARY_PATH}
+ export LD_LIBRARY_PATH
fi
start() {
Index: ChangeLog
===================================================================
RCS file: /cvsroot/sblim/sfcb/ChangeLog,v
retrieving revision 1.795
retrieving revision 1.796
diff -u -d -r1.795 -r1.796
--- ChangeLog 20 Jul 2012 14:10:43 -0000 1.795
+++ ChangeLog 29 Jul 2012 22:41:16 -0000 1.796
@@ -1,3 +1,8 @@
+2012-07-29 Dave Heller <hel...@us...>
+
+ * sfcb.init-none.in, sfcb.init-redhat.in, sfcb.init-suse.in:
+ [ 3541554 ] insecure LD_LIBRARY_PATH usage
+
2012-07-20 Dave Heller <hel...@us...>
* classProviderGz.c:
Index: NEWS
===================================================================
RCS file: /cvsroot/sblim/sfcb/NEWS,v
retrieving revision 1.710
retrieving revision 1.711
diff -u -d -r1.710 -r1.711
--- NEWS 20 Jul 2012 14:10:43 -0000 1.710
+++ NEWS 29 Jul 2012 22:41:16 -0000 1.711
@@ -11,6 +11,7 @@
- 1901737 Memory leak in internalProvider.c
- 3539006 Possible indication deadlock
- 3527714 Every other EnumerateClasses fails
+- 3541554 insecure LD_LIBRARY_PATH usage
Changes in 1.3.15
=================
|