(In reply to comment #11) > I'm not convinced the contents of the buffer are in attacker's control; did > anyone conduct some investigation?
I asked this of upstream and the reply was: > I'm not sure but I think this wasn't so serious. I never got it crash myself.
(In reply to comment #11)
> I'm not convinced the contents of the buffer are in attacker's control; did
> anyone conduct some investigation?
I asked this of upstream and the reply was:
> I'm not sure but I think this wasn't so serious. I never got it crash myself.