- rel 4
Bug:
Full of sprintf() calls and relying on BIG_BUFFER_SIZE being large enough.
There's multiple ways to exploit it by giving near-BIG_BUFFER_SIZE strings
in various places.
Changed files:
BitchX.spec -> 1.63
Summary(pt_BR): Cliente IRC para o console do Linux
Name: BitchX
Version: 1.0c19
-Release: 3
+Release: 4
License: GPL
Group: Applications/Networking
Source0: ftp://ftp.bitchx.com/pub/BitchX/source/ircii-pana-%{version}.tar.gz
Patch4: %{name}-emacs.patch
Patch5: %{name}-versioned-tcl.patch
Patch6: %{name}-353fix.patch
+Patch7: %{name}-secuirty.patch
Icon: BitchX.xpm
URL: http://www.bitchx.com/
BuildRequires: mysql-devel
%patch4 -p1
%patch5 -p1
%patch6 -p1
+%patch7 -p1
%build
CFLAGS="%{rpmcflags} -I%{_includedir}/ncurses"