Re: hylafax

From: Przemyslaw Frasunek (venglinat_private)
Date: Sat Oct 13 2001 - 12:31:29 PDT

  • Next message: Matthew S. Hallacy: "Re: OpenProjects IRCD allows DNS spoofing"

    > There are some format strings vulnerbilities in the lastest hylafax
    package
    > try faxrm -h %x 1 or faxalter -h %x -D 1 for "proof of concept".
    
    an exploit for this one:
    http://www.frasunek.com/sources/security/security/hylafax.pl
    
    --
    * Fido: 2:480/124 ** WWW: http://www.frasunek.com/ ** NIC-HDL: PMF9-RIPE *
    * Inet: przemyslawat_private ** PGP: D48684904685DF43EA93AFA13BE170BF *
    



    This archive was generated by hypermail 2b30 : Sun Oct 14 2001 - 18:10:29 PDT