[7123] in bugtraq
Re: patch for qpopper remote exploit bug
daemon@ATHENA.MIT.EDU (David DeSimone)
Tue Jun 30 18:47:00 1998
Mail-Followup-To: BUGTRAQ@NETSPACE.ORG
Date: Tue, 30 Jun 1998 17:06:45 -0500
Reply-To: David DeSimone <fox@RSN.HP.COM>
From: David DeSimone <fox@RSN.HP.COM>
To: BUGTRAQ@NETSPACE.ORG
In-Reply-To: <199806291627.MAA02102@x15-cruise-basselope.mit.edu>; from Kev on
Mon, Jun 29, 1998 at 12:27:16PM -0400
Kev <klmitch@MIT.EDU> wrote:
>
> A friend of mine has a rather clever implementation using pipe;
> http://web.mit.edu/svalente/src/snprintf/snprintf.c
A typical pipe buffer is 1K to 4K in size. If this code attempts to
fprintf() more data into the pipe than will fit, the code will block
because there is no one reading on the other end of the pipe.
--
David DeSimone | "The doctrine of human equality reposes on this:
fox@rsn.hp.com | that there is no man really clever who has not
Hewlett-Packard | found that he is stupid." -- Gilbert K. Chesterson
Convex Division | PGP: 5B 47 34 9F 3B 9A B0 0D AB A6 15 F1 BB BE 8C 44