Bugtraq mailing list archives

Re: Alert: Buffer Overrun is O'Reilly WebsitePro httpd32.exe (CISADV000717)


From: dan-bugtraq () DILVISH SPEED NET (Dan Harkless)
Date: Thu, 20 Jul 2000 11:31:36 -0700


Cerberus Security Team <cst () CERBERUS-INFOSEC CO UK> writes:
[...]
Vendor Status
*************
O'Reilly were informed of this on 23rd of June 2000, and the issue has been
fixed in the 2.5 release available at
http://software.oreilly.com/support/software/wsp2x_updates.cfm.
[...]

That URL is incorrect.  The host is website.oreilly.com, not
software.oreilly.com.

----------------------------------------------------------------------
Dan Harkless                   | To prevent SPAM contamination, please
dan-bugtraq () dilvish speed net  | do not mention this private email
SpeedGate Communications, Inc. | address in Usenet posts.  Thank you.


Current thread: