[Mailman-Users] Google Code Search

Barry Warsaw barry at python.org
Sun Oct 8 19:33:29 CEST 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Oct 8, 2006, at 11:01 AM, Gadi Evron wrote:

> Hi guys. I've been playing a lot with Google's new code search,  
> collecting
> a lot of search strings relating to security.
>
> I searched for TBD and then TBD security. The very first hit is from
> mailman 2.0.9:
>
>     38:   *
>           * TBD: This file needs a security audit.
>           */
>
> Just thought I'd share. If mailman is in need of volunteers, please  
> let us
> know.

That is from the vsnprintf.c file and it's only used on systems that  
don't have vsnprintf().  The file was taken almost literally from  
screen 3.7.6 and hasn't been looked at or updated in quite a while.

OTOH, are there any systems left that /don't/ have vsnprintf() in  
their standard C library?  Certainly the modern Solaris, Mac OS X,  
and Linux boxes that I have available all provide vsnprintf().

- -Barry

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (Darwin)

iQCVAwUBRSk2dHEjvBPtnXfVAQJOTAQAidz2wShzIk6Tz2aUbFZZeJK5+r98xkAj
Xl92BfbBaLOrFZ+mCcg61s3xtgYLj0+j9mn00UYGReDdNaKcBE6Xh5HlZsIP6RXg
d9mqkTNkUf6s16JC3c/AqSRv51Z/b7Gg7kMYDC1dKDG2yEvZr9qJpvNISTlMiDQs
zl4Wku2xzhA=
=M7gI
-----END PGP SIGNATURE-----



More information about the Mailman-Users mailing list