curl-library
similar krb4 buffer overflow too
From: Daniel Stenberg <daniel-curl_at_haxx.se>
Date: Tue, 22 Feb 2005 09:16:24 +0100 (CET)
Date: Tue, 22 Feb 2005 09:16:24 +0100 (CET)
I found this too:
The same iDEFENCE "notified vendor - no response" thing:
http://www.idefense.com/application/poi/display?id=203&type=vulnerabilities&flashstatus=false
I actually doubt the krb4 code is even still working, so this flaw is not
extremely important.
-- Daniel Stenberg -- http://curl.haxx.se -- http://daniel.haxx.se Dedicated custom curl help for hire: http://haxx.se/curl.htmlReceived on 2005-02-22