BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: gzip TOCTOU file-permissions vulnerability Apr 14 2005 06:36AM
Theodor Milkov (zimage icdsoft com)
Joey Hess wrote:
> Martin Pitt wrote:
<cut>
>>Maybe I understood you wrong, could you please give a small test case
>>which describes the vulnerability exactly?
>
>
> I'm a wimp, so I will use gdb instead of writing some real exploit to
> win the race.

It is quite easy to win the race when the fi...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus