[Full-disclosure] Secunia PSI (RC3) - memory corruption condition

2009-09-02 Thread exploit dev
Hi I have detect, in some circumstance, a memory corruption issue in Secunia PSI (release candidate 3). The vendor was contacted without response. ...I know that this kind of issues in release candidate are not so rare but if you are interested check:

Re: [Full-disclosure] Secunia PSI (RC3) - memory corruption condition

2009-09-02 Thread Thomas Kristensen
Hi, Thank you for the report. Based on the provided information, this is not a security issue (as securityfocus wrongfully hasted to conclude), but rather a bug (in an ancient release candidate). If you have any further details, please send those to secur...@secunia.com. -- Kind regards,

Re: [Full-disclosure] Secunia PSI (RC3) - memory corruption condition

2009-09-02 Thread exploit dev
Hi Thomas, my post is not to intend for malicious activities. In report I write that is usually for rc stage, discovery condition of this kind. Usually these ancient bugs, IMHO, may be used for support analysis based on binary diff using the historical releases of an application for obtain a delta