lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Date: Fri, 25 Feb 2011 08:22:59 +0000 (UTC) From: Maksymilian Arciemowicz <cxib@...urityreason.com> To: full-disclosure@...ts.grok.org.uk Subject: Re: glibc and alloca() Chris Evans <scarybeasts <at> gmail.com> writes: > Linux distribution might still have vulnerabilities in this area. proftpd use gnu libc implementation http://www.proftpd.org/docs/RELEASE_NOTES-1.3.4rc1 + Updated fnmatch implementation, using glibc-2.9 version. Version 1.3.3d may contain this issue -- Best Regards pub 4096R/D6E5B530 2010-09-19 uid Maksymilian Arciemowicz (cx) <max@...b.net> sub 4096R/58BA663C 2010-09-19 _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/