Bugtraq mailing list archives
Buffer overflows in Deliver: get 2.1.13
From: chip () ATLANTIC NET (Chip Salzenberg)
Date: Mon, 12 Jan 1998 11:36:14 -0500
I'm the author of Deliver, a program for local delivery of mail. Normally, Deliver is installed suid root. There's are two buffer overflow bugs in versions of Deliver currently in use. If you use Deliver or know someone who does, I strongly suggest upgrading to Deliver 2.1.13. Here's one place to get it: http://www.pobox.com/~chip/deliver-2.1.13.tar.gz PS: I'll be happy to send a PGP-signed copy of this message once I manage to get my PGP to produce a human-readable signed message. (For some reason it always generates opaque output for me...) -- Chip Salzenberg - a.k.a. - <chip () pobox com> "I stopped that bus and I saved them kids!" "All except one -- the one you let drive!" "He showed me his license..." "He was seven!!!" // MST3K
Current thread:
- Addendum to FrontPage password issue hostmaster (Jan 09)
- Re: Addendum to FrontPage password issue Kosmas Skiadopoulos (Jan 11)
- perl version of that tin opener (IOS decrypt.c) Riku Meskanen (Jan 11)
- Again: perl version of that tin opener (IOS decrypt.c) Riku Meskanen (Jan 11)
- bug in Solaris 2.6 security logging Ruth Milner [VLA] (Jan 12)
- Buffer overflows in Deliver: get 2.1.13 Chip Salzenberg (Jan 12)
- [SIGNED] Buffer overflows in Deliver: get 2.1.13 Chip Salzenberg (Jan 12)
- KSR[T] Advisory #6: deliver KSR[T] (Jan 12)
- Re: KSR[T] Advisory #6: deliver Chip Salzenberg (Jan 12)
- hole in sudo for MP-RAS. osiris () COURIER CB LUCENT COM (Jan 12)
- Re: hole in sudo for MP-RAS. Cy Schubert - ITSD Open Systems Group (Jan 12)
- Re: hole in sudo for MP-RAS. Todd C. Miller (Jan 12)
- Re: hole in sudo for MP-RAS. Cy Schubert - ITSD Open Systems Group (Jan 12)
- Re: hole in sudo for MP-RAS. Todd C. Miller (Jan 12)
- Re: hole in sudo for MP-RAS. Todd C. Miller (Jan 13)
- Re: hole in sudo for MP-RAS. dsiebert () ICAEN UIOWA EDU (Jan 12)