| To: | bugtraq@securityfocus.com |
|---|---|
| Subject: | evince buffer overflow exploit (gv) |
| From: | kspecial <kspecial@xzziroz.net.net> |
| Date: | Tue, 28 Nov 2006 00:11:48 -0500 |
| Delivered-to: | sp-com-lists@consult.net |
| Delivered-to: | bugtraq-list@securepoint.com |
| Delivered-to: | mailing list bugtraq@securityfocus.com |
| Delivered-to: | moderator for bugtraq@securityfocus.com |
| List-help: | <mailto:bugtraq-help@securityfocus.com> |
| List-id: | <bugtraq.list-id.securityfocus.com> |
| List-post: | <mailto:bugtraq@securityfocus.com> |
| List-subscribe: | <mailto:bugtraq-subscribe@securityfocus.com> |
| List-unsubscribe: | <mailto:bugtraq-unsubscribe@securityfocus.com> |
| Mailing-list: | contact bugtraq-help@securityfocus.com; run by ezmlm |
| User-agent: | Mutt/1.5.13 (2006-08-11) |
hey team, seems evince is vuln through it's embedded use of gv to the same hole described in bid 20978. here is exploit code for evince. users using epiphany web browser beware, this is click-a-link exploitation. --K-sPecial
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: Re: "Which is more secure? Oracle vs. Microsoft" (is it a fair comparison?), David Litchfield |
|---|---|
| Next by Date: | TSLSA-2006-0066 - multi, Trustix Security Advisor |
| Previous by Thread: | [USN-386-1] ImageMagick vulnerability, Kees Cook |
| Next by Thread: | TSLSA-2006-0066 - multi, Trustix Security Advisor |
| Indexes: | [Date] [Thread] [Top] [All Lists] |