[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: SMS handling OpenSER remote code executing
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: Re: SMS handling OpenSER remote code executing
- From: bogdan@xxxxxxxxxxxxxxx
- Date: 4 Jan 2007 15:34:54 -0000
Thanks for report. I just applied an fix for both the latest stable version
(1.1.0) and the development version (1.2.0).
Not sure if code injection is possible as the maximum overflow is of 5 bytes,
guess not long enough to encode an instruction.
Regards,
Bogdan