[33781] in bugtraq

home help back first fref pref prev next nref lref last post

Re: iDEFENSESecurityAdvisory02.10.04:

daemon@ATHENA.MIT.EDU (Steffen Kluge)
Tue Feb 17 16:41:15 2004

From: Steffen Kluge <kluge@fujitsu.com.au>
To: bugtraq@securityfocus.com
In-Reply-To: <Pine.LNX.4.44.0402140847240.3038-100000@harrier.dpmms.cam.ac.uk>
Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="=-Ln3XiwkzX3W8uU7yUwNx"
Message-Id: <1076978616.22764.16.camel@syd0137.fujitsu.com.au>
Mime-Version: 1.0
Date: Tue, 17 Feb 2004 11:45:31 +1100

--=-Ln3XiwkzX3W8uU7yUwNx
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable

On Sat, 2004-02-14 at 19:58, Dr Andrew C Aitchison wrote:
> I note that this code also ocurs in Xvnc,

The version of Xvnc I've tried behaves somewhat differently, though:

$ perl -e 'print "0" x 1024 . "A" x 96 . "\n"' > fonts.alias
$ Xvnc :10 -fp .
17/02/04 11:28:28 Xvnc version 3.3.3r2+tight1.2.4
17/02/04 11:28:28 Copyright (C) AT&T Laboratories Cambridge.
17/02/04 11:28:28 All Rights Reserved.
17/02/04 11:28:28 See http://www.uk.research.att.com/vnc for information
on VNC
17/02/04 11:28:28 Desktop name 'x11' (my.host:10)
17/02/04 11:28:28 Protocol version supported 3.3
17/02/04 11:28:28 Listening for VNC connections on TCP port 5910
failed to set default font path '.'
Fatal server error:
could not open default font 'fixed'

No signals are caught. Also, Xvnc doesn't need to be suid, and usually
isn't.

Cheers
Steffen.


--=-Ln3XiwkzX3W8uU7yUwNx
Content-Type: application/pgp-signature; name=signature.asc
Content-Description: This is a digitally signed message part

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)

iD8DBQBAMWO4UmpSA4kzHnARArmEAJ9MDTnxOaszrBDp89uCgpC0UjaZagCgolEM
/g3j1Qfrz3OK31+outwZEg8=
=qQUg
-----END PGP SIGNATURE-----

--=-Ln3XiwkzX3W8uU7yUwNx--


home help back first fref pref prev next nref lref last post