Are NULL pointer deref a security problem ?

From: Nicolas Gregoire (ngregoireat_private)
Date: Fri Dec 07 2001 - 03:53:53 PST

  • Next message: KRUSE PETER, Teliadk: "IE6.0 could inherit Iframe weakness from IE 5.x if not patched pr oberly"

    From http://www.apache.org/dist/httpd/CHANGES_1.3 :
    
    8< -------------------------------------------------------------------------------------------
    
    Changes with Apache 1.3.21
    
    [snip]
    
      *) ErrorDocument 404 pointing to a parsed html file with a
         <!--#include virtual="file" --> with a request URI containing
         %2f would result in a segfault (NULL pointer deref, not a
         security problem).  [Jeff Moe <tuxat_private>, Dean Gaudet] PR#8362
    
    8< -------------------------------------------------------------------------------------------
    
    Nicolas Grégoire
    



    This archive was generated by hypermail 2b30 : Fri Dec 07 2001 - 08:21:57 PST