Re: [Full-disclosure] [gif2png] long filename Buffer Overrun

2009-12-13 Thread Patroklos Argyroudis
with a strcpy function. AFFECTED VERSION: latest: 2.5.2 I have reported this to Debian about two months ago: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=550978 -- Patroklos Argyroudis http://www.census-labs.com/ ___ Full-Disclosure - We believe

[Full-disclosure] CVE-2008-3531

2009-07-03 Thread Patroklos Argyroudis
/* * cve-2008-3531.c -- Patroklos Argyroudis, argp at domain census-labs.com * * Privilege escalation exploit for the FreeBSD-SA-08:08.nmount * (CVE-2008-3531) vulnerability: * * http://security.freebsd.org/advisories/FreeBSD-SA-08:08.nmount.asc * http://web.nvd.nist.gov/view/vuln/detail