[30366] in bugtraq
Re: Tripbit Advisory TA-2003-05 Buffer Overflow Vulnerability in
daemon@ATHENA.MIT.EDU (Holger Zimmermann)
Thu Jun 5 15:59:29 2003
Date: 5 Jun 2003 16:38:54 -0000
Message-ID: <20030605163854.17775.qmail@www.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: Holger Zimmermann <zimpel@users.sourceforge.net>
To: bugtraq@securityfocus.com
In-Reply-To: <3EDBB632.4030000@tripbit.org>
The problem has been encountered with the Win32 version
of Pi3Web 2.0.2 beta 1, a pre-released beta for public
testing.
As I determined, it is not necessary, to have specific
configuration options set in order to reproduce the
exploit (maybe dependent on the runtime-environment).
The problem is fixed in Pi3Web 2.0.2 beta 2, available
from:
http://belnet.dl.sourceforge.net/sourceforge/pi3web/Pi3Web-x86Win32-2_0_2-beta2.exe
Pi3Web 2.0.2 beta 1 is no more available and has been
available for only about one week (5 downloads of
Pi3Web 2.0.2 beta 1 registered at sourceforge).
--
Holger Zimmermann