|
Re: ecartis / listar PoC: msg#00390security.bugtraq
The thing is this is the least of their worries... and as you said the author IS working dilligently to fix the issues at hand. As for the patch ... knock your self out heres the errant code. [root@ghetto ecartis-1.0.0]# grep -n pathname"\[" src/core.c 80:char pathname[BIG_BUF]; [root@ghetto ecartis-1.0.0]# grep -n "sprintf(pathname" src/core.c 891: sprintf(pathname, "%s", argv[0]); -KF John Madden wrote: On Wednesday 24 April 2002 08:56 pm, KF wrote: |
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| Previous by Date: | Re: ecartis / listar PoC: 00390, John Madden |
|---|---|
| Next by Date: | IndiaTimes.com - Email - Session hijacking and Inbox Blocking: 00390, Giri Sandeep |
| Previous by Thread: | Re: ecartis / listar PoCi: 00390, John Madden |
| Next by Thread: | Fragroute and ISS (NetworkICE) products: a brief analysis: 00390, Chris Deibler |
| Indexes: | [Date] [Thread] [Top] [All Lists] |
| News | FAQ | advertise |