XFree86 Font Information File Buffer Overflow

From: Barnes, John (jbarnes_at_trusecure.com)
Date: 02/13/04

  • Next message: Spades: "Re: SYN Attacks - how i cant stop it"
    To: "'freebsd-security@freebsd.org'" <freebsd-security@freebsd.org>
    Date: Fri, 13 Feb 2004 09:25:01 -0500
    
    

     
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    Has anyone see this alert?

    http://www.securityfocus.com/archive/1/353352

    It seems to work on Linux, but when I tried the proof of concept on
    4.3.0,1 running 5.2 RELEASE, I couldn't get the X server to core dump
    or segmentation fault. So, it seems likely to me that FreeBSD is not
    vulnerable to this. Any other thoughts on this matter?

    John Barnes
    TruSecure

    -----BEGIN PGP SIGNATURE-----
    Version: PGP 8.0.3

    iQA/AwUBQCzePZuhTuCp6UG8EQJ9IACg3lY365GZicwVXTRtK26bnrVGcMYAoMjp
    vwPcKAfyyjeUu5R6HbjHxbKn
    =jW3K
    -----END PGP SIGNATURE-----

    ***********************************************************************
    This message is intended only for the use of the intended recipient and
    may contain information that is PRIVILEGED and/or CONFIDENTIAL. If you
    are not the intended recipient, you are hereby notified that any use,
    dissemination, disclosure or copying of this communication is strictly
    prohibited. If you have received this communication in error, please
    destroy all copies of this message and its attachments and notify us
    immediately.
    ***********************************************************************

    _______________________________________________
    freebsd-security@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-security
    To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"


  • Next message: Spades: "Re: SYN Attacks - how i cant stop it"

    Relevant Pages

    • fedora as a gateway / server
      ... I would like to change this to have a Linux box ... need a second NIC installed that will attach to a hub for the other ... distribution or copying of this communication is strictly prohibited. ...
      (Fedora)
    • vfat lv sharing
      ... I have a machine with 2 disks in it, one runs winXP, the other Fedora. ... linux side is LVM, and I am having issues seeing the lv on the windows ... delivering the message to the intended recipient, ... copying of this communication is strictly prohibited. ...
      (Fedora)
    • RE: is everyone dead?
      ... Odd how I have not had anytime for Linux and this is the email I click ... distribution or copying of this communication is strictly prohibited. ...
      (Ubuntu)
    • RE: that old GNU/Linux argument
      ... So, if someone said "I'm a Linux developer", you'd immediately know ... I do not know what compiler or language he used, nor do I care. ... distribution or copying of this communication is strictly prohibited. ...
      (Fedora)
    • Re: Worst Predictions of All Time
      ... not the intended recipient, you are hereby notified that any disclosure, ... The information contained in this communication (including any ... For IBM-MAIN subscribe / signoff / archive access instructions, ... send email to listserv@xxxxxxxxxxx with the message: GET IBM-MAIN INFO ...
      (bit.listserv.ibm-main)