summaryrefslogtreecommitdiff
path: root/openwrt/package/dropbear/patches
diff options
context:
space:
mode:
Diffstat (limited to 'openwrt/package/dropbear/patches')
-rw-r--r--openwrt/package/dropbear/patches/change-user.patch15
-rw-r--r--openwrt/package/dropbear/patches/use-dev-urandom.patch12
2 files changed, 27 insertions, 0 deletions
diff --git a/openwrt/package/dropbear/patches/change-user.patch b/openwrt/package/dropbear/patches/change-user.patch
new file mode 100644
index 0000000000..3dc068f8ba
--- /dev/null
+++ b/openwrt/package/dropbear/patches/change-user.patch
@@ -0,0 +1,15 @@
+--- dropbear-0.44.old/svr-chansession.c 2005-02-03 02:29:44.000000000 +0100
++++ dropbear-0.44/svr-chansession.c 2005-02-03 02:31:05.000000000 +0100
+@@ -859,10 +859,10 @@
+ /* We can only change uid/gid as root ... */
+ if (getuid() == 0) {
+
+- if ((setgid(ses.authstate.pw->pw_gid) < 0) ||
++ if ((ses.authstate.pw->pw_uid != 0) && ((setgid(ses.authstate.pw->pw_gid) < 0) ||
+ (initgroups(ses.authstate.pw->pw_name,
+ ses.authstate.pw->pw_gid) < 0) ||
+- (setuid(ses.authstate.pw->pw_uid) < 0)) {
++ (setuid(ses.authstate.pw->pw_uid) < 0))) {
+ dropbear_exit("error changing user");
+ }
+ } else {
diff --git a/openwrt/package/dropbear/patches/use-dev-urandom.patch b/openwrt/package/dropbear/patches/use-dev-urandom.patch
new file mode 100644
index 0000000000..139728308c
--- /dev/null
+++ b/openwrt/package/dropbear/patches/use-dev-urandom.patch
@@ -0,0 +1,12 @@
+diff -urN dropbear-0.44.old/options.h dropbear-0.44/options.h
+--- dropbear-0.44.old/options.h 2005-03-02 23:08:07.000000000 +0100
++++ dropbear-0.44/options.h 2005-03-03 01:12:21.000000000 +0100
+@@ -139,7 +139,7 @@
+ * will prevent Dropbear from blocking on the device. This could
+ * however significantly reduce the security of your ssh connections
+ * if the PRNG state becomes simpler. */
+-#define DROPBEAR_RANDOM_DEV "/dev/random"
++#define DROPBEAR_RANDOM_DEV "/dev/urandom"
+
+ /* prngd must be manually set up to produce output */
+ /*#define DROPBEAR_PRNGD_SOCKET "/var/run/dropbear-rng"*/