Re: Format String Vulnerability in Tripwire
From: Ron Forrester (rjf_at_tripwire.com)
Date: 06/04/04
- Previous message: http-equiv_at_excite.com: "RE: PING: Outlook 2003 Spam"
- Maybe in reply to: Paul Herman: "Format String Vulnerability in Tripwire"
- Next in thread: Ron Forrester: "Re: Format String Vulnerability in Tripwire"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: 4 Jun 2004 17:51:12 -0000 To: bugtraq@securityfocus.com('binary' encoding is not supported, stored as-is) In-Reply-To: <20040603215236.7815.qmail@www.securityfocus.com>
One more quick note -- I think I had a brain freeze and gave Paul the wrong commerical version numbers. This vulnerability exists in all currently shipping TFS releases, which means <= 4.0.1.
Sorry I didn't catch this the first time.
Ron Forrester
Security Architect
Tripwire, Inc.
>>VERSIONS AFFECTED
>>-----------------
>>Tripwire commercial versions <= 2.4
>>Tripwire open source versions <= 2.3.1
>
- Previous message: http-equiv_at_excite.com: "RE: PING: Outlook 2003 Spam"
- Maybe in reply to: Paul Herman: "Format String Vulnerability in Tripwire"
- Next in thread: Ron Forrester: "Re: Format String Vulnerability in Tripwire"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|