oss-sec mailing list archives
Re: CVE request: Cyrus-sasl NULL ptr. dereference
From: Solar Designer <solar () openwall com>
Date: Fri, 12 Jul 2013 20:07:48 +0400
On Fri, Jul 12, 2013 at 03:47:57PM +0000, mancha wrote:
Under a default scenario, authentication would continue to be available until the 5th NULL ptr. dereference.
OK, this is a security issue and is CVE-worthy, then. Thanks! Alexander
Current thread:
- CVE request: Cyrus-sasl NULL ptr. dereference mancha (Jul 12)
- Re: CVE request: Cyrus-sasl NULL ptr. dereference Solar Designer (Jul 12)
- Re: CVE request: Cyrus-sasl NULL ptr. dereference Sebastian Krahmer (Jul 15)
- <Possible follow-ups>
- Re: CVE request: Cyrus-sasl NULL ptr. dereference mancha (Jul 12)
- Re: CVE request: Cyrus-sasl NULL ptr. dereference Solar Designer (Jul 12)
- Re: CVE request: Cyrus-sasl NULL ptr. dereference Kurt Seifried (Jul 12)
- Re: CVE request: Cyrus-sasl NULL ptr. dereference Solar Designer (Jul 12)