[Full-disclosure] Kaspersky 14.0.0.4651 RegExp Remote Denial of Service PoC2

2014-03-19 Thread [CXSEC]
of regular expressions is NetBSD/OpenBSD where the authors have reduced the risk of leakage of resources by the level of recursion. References: http://cxsecurity.com/issue/WLB-2014030108 Best regards, CXSEC TEAM http://cxsec.org/ ___ Full-Disclosure - We believe

[Full-disclosure] MacOSX Safari Firefox Kaspersky RegExp Remote/Local Denial of Service

2014-03-14 Thread [CXSEC]
://cert.cx/regexp-smaczki/kaspersky.jpg https://bugzilla.redhat.com/show_bug.cgi?id=645859 https://support.zabbix.com/browse/ZBX-4625 http://cert.cx/regexp-smaczki/regex.html https://devilteam.pl/kaspkersky.html https://devilteam.pl/ Best regards, CXSEC TEAM http://cxsec.org

[Full-disclosure] Apple MacOSX 10.9 Hard Link Memory Corruption

2013-11-08 Thread [CXSEC]
Apple MacOSX 10.9 Hard Link Memory Corruption Date: 08.11.2013 http://cxsecurity.com/ http://cvemap.org/ URL: http://cxsecurity.com/issue/WLB-2013110059 - 0. Description --- In most UNIX-like systems a hard link to a directory is only reserved for the 'root' user when possible at all. In

[Full-disclosure] MacOSX 10.8.3 ftpd Remote Resource Exhaustion

2013-04-11 Thread [CXSEC]
, CXSEC TEAM http://cxsecurity.com/ http://cxsec.org/ ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/