[512] in Best-of-Security
BoS: xscreensaver buffer overflow
daemon@ATHENA.MIT.EDU (Aleph One)
Thu Dec 25 13:17:22 1997
XDelivering-To: best-of-security@cyber.com.au
Delivering-To: best-of-security@cyber.com.au
Date: Tue, 2 Dec 1997 00:23:04 -0600
Reply-To: Aleph One <aleph1@DFW.NET>
From: Aleph One <aleph1@DFW.NET>
Old-X-Originally-To: To: BUGTRAQ@NETSPACE.ORG
Old-X-Originated-From: From: Aleph One <aleph1@DFW.NET>
Errors-To: best-of-security-request@cyber.com.au
To: best-of-security@cyber.com.au
Resent-From: best-of-security@cyber.com.au
On an article on c.s.u Kim San Su <shanx@comp67.snu.ac.kr> (Message-ID:
<34819D49.73C9F17E@comp67.snu.ac.kr>) states he has found a buffer
overflow in xscreensaver.
When you use xscreensaver to lock your workstaion and you enter more than
80 characters at the password input windows, xscreensaver will die and you
will have access to the X desktop.
Aleph One / aleph1@dfw.net
http://underground.org/
KeyID 1024/948FD6B5
Fingerprint EE C9 E8 AA CB AF 09 61 8C 39 EA 47 A8 6A B8 01