Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
OpenSER 1.1.0 parse_config buffer overflow vulnerability Dec 20 2006 11:32PM
sapheal hack pl
Function of a prototype:
static int parse_expression(char *str, expression **e, expression **e_exceptions)

in OpenSER 1.1.0 (SIP router implementation) is vulnerable to buffer overflow as /str/ might be longer than the destination (where it is coppied to).
...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus