Re: [exim-dev] buffer overflow?

Page principale
Supprimer ce message
Répondre à ce message
Auteur: Philip Hazel
Date:  
À: Subhi S Hashwa
CC: exim-dev
Sujet: Re: [exim-dev] buffer overflow?
On Sat, 12 Mar 2005, Subhi S Hashwa wrote:

> I am not a programmer, so I could be talking out of my backside
> here, going through my logfiles, I notice my /etc/group and
> /etc/services in the logfile as rejected input.


I will look at the code. Thanks for the report.

> Asking few people for advice they suggested it could be a buffer
> overflow exploit, since I am using Exim 4.50 I thought you guys
> might be interested in having a look.


I don't think it is an exploit. It is more likely to be that a buffer
hasn't been correctly initialized.

-- 
Philip Hazel            University of Cambridge Computing Service,
ph10@???      Cambridge, England. Phone: +44 1223 334714.
Get the Exim 4 book:    http://www.uit.co.uk/exim-book