[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-disclosure] [ GLSA 200611-08 ] RPM: Buffer overflow



Aren't RPMs meant to contain arbitrary code?

Matthew Flaschen

Raphael Marichez wrote:
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
> 
> Synopsis
> ========
> 
> RPM is vulnerable to a buffer overflow and possibly the execution of
> arbitrary code when opening specially crafted packages.

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/