- 23 Apr, 2021 1 commit
-
-
Ed Maste authored
-
- 14 Feb, 2021 4 commits
- 14 Feb, 2020 1 commit
-
-
Ed Maste authored
-
- 27 Mar, 2019 1 commit
-
-
Ed Maste authored
upstream: when checking that filenames sent by the server side match what the client requested, be prepared to handle shell-style brace alternations, e.g. "{foo,bar}". "looks good to me" millert@ + in snaps for the last week courtesy deraadt@ OpenBSD-Commit-ID: 3b1ce7639b0b25b2248e3a30f561a548f6815f3e Discussed with: des
-
- 05 Feb, 2019 4 commits
-
-
Dag-Erling Smørgrav authored
-
Dag-Erling Smørgrav authored
-
Dag-Erling Smørgrav authored
| scp: add -T to usage(); | | OpenBSD-Commit-ID: a7ae14d9436c64e1bd05022329187ea3a0ce1899
-
Dag-Erling Smørgrav authored
| remote->local directory copies satisfy the wildcard specified by the user. | | This checking provides some protection against a malicious server | sending unexpected filenames, but it comes at a risk of rejecting wanted | files due to differences between client and server wildcard expansion rules. | | For this reason, this also adds a new -T flag to disable the check. | | reported by Harry Sintonen | fix approach suggested by markus@; | has been in snaps for ~1wk courtesy deraadt@ | | OpenBSD-Commit-ID: 00f44b50d2be8e321973f3c6d014260f8f7a8eda
-
- 03 Oct, 2018 1 commit
-
-
Ed Maste authored
Upstream commits: 482d23bcac upstream: hold our collective noses and use the openssl-1.1.x 48f54b9d12 adapt -portable to OpenSSL 1.1x API 86e0a9f3d2 upstream: use only openssl-1.1.x API here too a3fd8074e2 upstream: missed a bit of openssl-1.0.x API in this unittest cce8cbe0ed Fix openssl-1.1 fallout for --without-openssl. Trivial conflicts in sshkey.c and test_sshkey.c were resolved. Discussed with: des
-
- 28 Aug, 2018 1 commit
-
-
Dag-Erling Smørgrav authored
-
- 16 May, 2018 1 commit
-
-
Dag-Erling Smørgrav authored
-
- 06 May, 2018 2 commits
-
-
Dag-Erling Smørgrav authored
-
Dag-Erling Smørgrav authored
-
- 03 Aug, 2017 1 commit
-
-
Dag-Erling Smørgrav authored
-
- 31 Jan, 2017 2 commits
-
-
Dag-Erling Smørgrav authored
-
Dag-Erling Smørgrav authored
-
- 11 Jan, 2017 1 commit
-
-
Xin LI authored
add a whitelist of paths from which ssh-agent will load (via ssh-pkcs11-helper) a PKCS#11 module; ok markus@ disable Unix-domain socket forwarding when privsep is disabled (Note that this is a backport of upstream fixes, and this commit is mainly to ease future imports). Obtained from: OpenBSD
-
- 02 Nov, 2016 1 commit
-
-
Xin LI authored
Unregister the KEXINIT handler after message has been received. Otherwise an unauthenticated peer can repeat the KEXINIT and cause allocation of up to 128MB -- until the connection is closed. Reported by shilei-c at 360.cn Obtained from: OpenBSD
-
- 10 Mar, 2016 2 commits
-
-
Dag-Erling Smørgrav authored
-
Dag-Erling Smørgrav authored
-
- 19 Jan, 2016 1 commit
-
-
Dag-Erling Smørgrav authored
-
- 26 Aug, 2015 2 commits
-
-
Dag-Erling Smørgrav authored
-
Dag-Erling Smørgrav authored
-
- 02 Jul, 2015 2 commits
-
-
Dag-Erling Smørgrav authored
-
Dag-Erling Smørgrav authored
-
- 05 Jan, 2015 1 commit
-
-
Dag-Erling Smørgrav authored
-
- 20 Apr, 2014 1 commit
-
-
Dag-Erling Smørgrav authored
about one out of 512 times.
-
- 22 Mar, 2014 1 commit
-
-
Dag-Erling Smørgrav authored
-
- 30 Jan, 2014 1 commit
-
-
Dag-Erling Smørgrav authored
-
- 11 Nov, 2013 1 commit
-
-
Xin LI authored
Approved by: des
-
- 18 Sep, 2013 1 commit
-
-
Dag-Erling Smørgrav authored
-
- 13 Aug, 2013 1 commit
-
-
Dag-Erling Smørgrav authored
-
- 17 May, 2013 1 commit
-
-
Dag-Erling Smørgrav authored
-
- 24 Apr, 2013 1 commit
-
-
Dag-Erling Smørgrav authored
-
- 14 Apr, 2013 1 commit
-
-
Dag-Erling Smørgrav authored
errors in the common case (i.e. client intentionally disconnected).
-
- 02 Apr, 2013 1 commit
-
-
Dag-Erling Smørgrav authored
file" warnings.
-
- 22 Mar, 2013 1 commit
-
-
Dag-Erling Smørgrav authored
-