+ John Kemp <[EMAIL PROTECTED]>:

> It does seem he would like an air of some mystery to exist though
> until he makes his presentation about the issue at Defcon - did he,
> himself, discover something new? We'll just have to wait, unless we
> go play with the BIND code ourselves.

Unless he is merely blowing smoke, it would seem that he discovered
some little twist that makes the known vulnerability much more easily
exploitable than previously assumed. That would explain his statement:
the patch fixes a well known vulnerability, and as a side effect stops
the more serious attack, in effect making it hard to tell what is
involved in that attack from reading the patch.

- Harald

The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to [EMAIL PROTECTED]

Reply via email to