[9646] in bugtraq
Re: [HERT] Advisory #002 Buffer overflow in lsof
daemon@ATHENA.MIT.EDU (Gene Spafford)
Thu Feb 18 18:57:52 1999
Date: Thu, 18 Feb 1999 12:24:52 -0500
Reply-To: Gene Spafford <spaf@CS.PURDUE.EDU>
From: Gene Spafford <spaf@CS.PURDUE.EDU>
X-To: abe@purdue.edu
To: BUGTRAQ@NETSPACE.ORG
In-Reply-To: Message from Vic Abell <abe@purdue.edu> of "Thu, 18 Feb 1999
07:10:47 -0500"
<001001be5b37$b7e6aeb0$aa87d280@vic2.cc.purdue.edu>
People who publish bugs/exploits that are not being actively exploited
*before* giving the vendor a chance to fix the flaws are clearly
grandstanding. They're part of the problem -- not the solution.