Re: Remote Buffer Overflow Vulnerability in Sun RPC

2002-08-02 Thread Ricardo Quesada
Hi, As the advisory says: ...Additional commercial and open-source Unix operating systems use implementations of SunRPC, and may also be vulnerable.. it seems that glibc based systems (eg: most, if not all, linuxes) are also vulnerable to exactly the same xdr_array problem.

Remote Buffer Overflow Vulnerability in Sun RPC

2002-07-31 Thread Dave Ahmad
-BEGIN PGP SIGNED MESSAGE- Internet Security Systems Security Brief July 31, 2002 Remote Buffer Overflow Vulnerability in Sun RPC Synopsis: Internet Security Systems (ISS) X-Force has discovered a buffer overflow in the xdr_array filter primitive. This function is a part of the Sun