Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 18 Feb 2004 22:30:08 -0600 (CST)
From:      Mike Silbersack <silby@silby.com>
To:        Oliver Eikemeier <eikemeier@fillmore-labs.com>
Cc:        freebsd-security@FreeBSD.org
Subject:   Re: [Fwd: [gentoo-announce] [ GLSA 200402-07 ] Clamav 0.65 DoS vulnerability]
Message-ID:  <20040218222911.A28073@odysseus.silby.com>
In-Reply-To: <40340D3F.8060805@fillmore-labs.com>
References:  <40337619.1050504@veldy.net> <20040218215950.GD47727@madman.celabo.org> <40340D3F.8060805@fillmore-labs.com>

next in thread | previous in thread | raw e-mail | index | archive | help

On Thu, 19 Feb 2004, Oliver Eikemeier wrote:

> Btw, it is almost unbearable smart that they include the sequence that triggers
> the bug in their mail, assuring that users that *have* the vulnerable clamd
> installed never see the advisory.
>
> It *had* a reason that I prefixed the lines with 'X'. Congratulations.
>
> -Oliver

When that pine header-parsing bug came out two years ago, the jerk threw
the bad header in his post to bugtraq.

I did not enjoy that. :(

Mike "Silby" Silbersack



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20040218222911.A28073>