Re: [Debian-audit] xshisen (again)

From: Javier Fernández-Sanguino Peña <jfs_at_debian.org>
Date: Wed, 12 Jan 2005 03:01:56 +0100

On Wed, Jan 12, 2005 at 02:51:57AM +0100, Ulf Härnhammar wrote:
> * Here is another buffer overflow in xshisen:
>
> http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=289784

:-O

> * Nice work with the /tmp bugs, Javier!

Thanks, I still have a _lot_ of bug reports to prepare, I actually think
this is something that a team could work on fixing. Patches for the most
common issue (using $$ in Shell or Perl scripts) are rather easy to
write (it's always the same bit of code), not so for usage of getpid() in C
code...

Regards

Javier

Received on Wed Jan 12 2005 - 02:02:00 GMT

Mailing list overview.