Christos,

I think libwrap/diag.c 1.15 will read random memory if either the tag
or tcpd_context.file contains "%s".  It's similar to 1.9 but lacks the
code in 1.9 to escape the percent signs (using fixed-length
buffers...).  Kludgy as it was, 1.13 seems like the least bad version
so far.
-- 
Andreas Gustafsson, g...@netbsd.org

Reply via email to