Gentoo Archives: gentoo-mirrors

From: Andrea Barisani <lcars@g.o>
To: gentoo-mirrors@g.o
Subject: [gentoo-mirrors] rsync 2.6.8 security update
Date: Sat, 29 Apr 2006 10:23:28
Message-Id: 20060429102313.GP23650@fuse.inversepath.com
1 Hi folks,
2
3 rsync 2.6.8 is out and it's being bumped in the portage tree for a security
4 update.
5
6 Quoting release notes:
7
8 - The xattrs.diff patch received a security fix that prevents a potential
9 buffer overflow in the receive_xattr() code.
10
11 Related bug:
12
13 http://bugs.gentoo.org/131631 (still closed but the issue is public anyway)
14
15 I updated the server on rsync1.it.gentoo.org for testing, after 2.6.0 the
16 --daemon options changed a bit, quoting changelog:
17
18 - The daemon-mode options are now separated from the normal rsync
19 options so that they can't be mixed together. This makes it
20 impossible to start a daemon that has improper default option
21 values (which could cause problems when a client connects, such as
22 hanging or crashing).
23
24 so you might have to strip some options from your command line arguments in
25 order to start it (and if appliable move them to rsyncd.conf)
26
27 More info at http://rsync.samba.org
28
29 Cheers
30
31 --
32 Andrea Barisani <lcars@g.o> .*.
33 Gentoo Linux Infrastructure Developer V
34 ( )
35 PGP-Key 0x864C9B9E http://dev.gentoo.org/~lcars/pubkey.asc ( )
36 0A76 074A 02CD E989 CE7F AC3F DA47 578E 864C 9B9E ^^_^^
37 "Pluralitas non est ponenda sine necessitate"
38 --
39 gentoo-mirrors@g.o mailing list

Replies

Subject Author
[gentoo-mirrors] gentoo-portage mirror problems Lior Kaplan <webmaster@×××××××××.il>