On Mon, July 12, 2004 9:25 pm, Sapheriel said: > what baffles me is how easily this problem could be countered. a simple > check of bfsize versus filesize(-header and such) would suffice.
Most vulnerabilities can be countered with something very simple like a size check, yet developers don't do it. :\ -Eric _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
