BugTraq
Re: Potential disclosure of sensitive information in Netscape 7.0 email client Jan 02 2003 11:42PM
Blud Clot (bludclot hellokitty com) (1 replies)
Re: Potential disclosure of sensitive information in Netscape 7.0 email client Jan 04 2003 06:37PM
Markus Gaugusch (markus gaugusch at)
On Jan 2, Blud Clot <bludclot (at) hellokitty (dot) com [email concealed]> wrote:
> I noticed this a while ago with netscape 4.x and those versions are
> still vulnerable as well. I've never checked 6.x.

I don't think this is a real vulnerability. The function says "delete" and
not "destroy". We all know, that data can be recovered after deletion.
The docs should be updated a little bit, but people who rely on the delete
features of their email client for security reasons can't be taken
seriously.

Markus Gaugusch
--
__________________ /"Markus Gaugusch \ / ASCII Ribbon Campaign
markus (at) gaugusch (dot) at [email concealed] X Against HTML Mail
/

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus