lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Tue, 10 Feb 2004 11:00:59 +0100
From: Oliver Eikemeier <eikemeier@...lmore-labs.com>
To: Stefan Triller <stefantriller@....de>
Cc: bugtraq@...urityfocus.com
Subject: Re: clamav 0.65 remote DOS exploit


Stefan Triller wrote:
> Hi,
> 
> 
>>>I tried reproducing the problem with the latest source in CVS, but
>>>had no problems. 0.65 is rather old, please try again with the
>>>latest version.
>>
>>0.65 ist the latest stable (release) version, so I guess most
>>production servers would run it, instead of an CVS snapshot.
> 
> 
> I have version 0.65-1 for debian from:
> deb http://people.debian.org/~aurel32/BACKPORTS stable main
> 
> and this ist not affected.

They patched the sources, thankfully.


Powered by blists - more mailing lists