Skip to content
GitLab
Projects Groups Topics Snippets
  • /
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
  • Register
  • Sign in
  • HardenedBSD HardenedBSD
  • Project information
    • Project information
    • Activity
    • Labels
    • Members
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributor statistics
    • Graph
    • Compare revisions
    • Locked files
  • Issues 31
    • Issues 31
    • List
    • Boards
    • Service Desk
    • Milestones
    • Iterations
    • Requirements
  • Merge requests 1
    • Merge requests 1
  • CI/CD
    • CI/CD
    • Pipelines
    • Jobs
    • Schedules
    • Test cases
  • Deployments
    • Deployments
    • Environments
    • Releases
  • Packages and registries
    • Packages and registries
    • Package Registry
    • Infrastructure Registry
  • Monitor
    • Monitor
    • Incidents
  • Analytics
    • Analytics
    • Value stream
    • CI/CD
    • Code review
    • Insights
    • Issue
    • Repository
  • Wiki
    • Wiki
  • Snippets
    • Snippets
  • Activity
  • Graph
  • Create a new issue
  • Jobs
  • Commits
  • Issue Boards
Collapse sidebar
  • HardenedBSDHardenedBSD
  • HardenedBSDHardenedBSD
  • Merge requests
  • !67

Draft: HBSD: Do not authorize TIOCSTI

  • Review changes

  • Download
  • Email patches
  • Plain diff
Closed Loic requested to merge loic/HardenedBSD:TIOCSTI into hardened/current/master Apr 28, 2022
  • Overview 5
  • Commits 1
  • Pipelines 0
  • Changes 1

This may seem a bit brutal but it ensures that TIOCSTI is not used for terminal command injection.

This could have an impact with several programs like mail, qemu, x11vnc, tcsh... but it seems interesting to me to try to get rid of it as OpenBSD has already done.

Signed-off-by: Loic loic.f@hardenedbsd.org

Assignee
Assign to
Reviewers
Request review from
Time tracking
Source branch: TIOCSTI