Re: FreeBSD remote root exploit ?

From: Assar Westerlund (assar@FreeBSD.ORG)
Date: 07/19/01


To: Matt Dillon <dillon@earth.backplane.com>
From: Assar Westerlund <assar@FreeBSD.ORG>
Date: 19 Jul 2001 19:18:58 +0200

Matt Dillon <dillon@earth.backplane.com> writes:
> It's even owrse... size_t is unsigned, so once you overflow the buffer
> the 'remaining' amount will be some huge number and you are screwed.

Yeah, I know. I changed them to `int' too. But if it wouldn't have
overflowed, it wouldn't have mattered...

/assar

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Relevant Pages


Loading