what was that?

Brett Glass brett at lariat.org
Mon Mar 31 11:27:13 PST 2003


At 11:56 AM 3/31/2003, Jacques A. Vidrine wrote:

>> It means that someone's trying to exploit a buffer overrun
>> vulnerability.
>
>No, I don't think so.

You have a right to disagree, of course. However, some MUAs
HAVE been reported to have buffer overflow vulnerabilities 
that can be exploited via an excessively long message ID
header. I have installed a filter that shortens them to
prevent Outlook users from being nailed by this bug.

--Brett



More information about the freebsd-security mailing list