Subject: CVS commit: pkgsrc/x11/openmotif
To: None <pkgsrc-changes@NetBSD.org>
From: Joerg Sonnenberger <joerg@netbsd.org>
List: pkgsrc-changes
Date: 01/07/2006 21:08:12
Module Name:	pkgsrc
Committed By:	joerg
Date:		Sat Jan  7 21:08:12 UTC 2006

Modified Files:
	pkgsrc/x11/openmotif: Makefile distinfo
Added Files:
	pkgsrc/x11/openmotif/patches: patch-bj patch-bk

Log Message:
Fix a number of buffer overflows in OpenMotif's UIL implementation.
For non-propolice systems this might be exploitable when the
user-provided data (e.g. certain filenames) or the locale files are
manipulated.

Mostly-found-by: xfocus, see [xfocus-SD-051202] on VulnWatch. Some
additional cases are handled which have the same impact.
Bump revision.


To generate a diff of this commit:
cvs rdiff -r1.39 -r1.40 pkgsrc/x11/openmotif/Makefile
cvs rdiff -r1.21 -r1.22 pkgsrc/x11/openmotif/distinfo
cvs rdiff -r0 -r1.3 pkgsrc/x11/openmotif/patches/patch-bj
cvs rdiff -r0 -r1.1 pkgsrc/x11/openmotif/patches/patch-bk

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.