Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Mon, 24 Mar 2008 11:13:43 +0100
From: Lubomir Kundrak <lkundrak@...hat.com>
To: Secunia Research <vuln@...unia.com>
Cc: oss-security@...ts.openwall.com
Subject: SA29489 CenterIM URL handling flaw

Hi,

Ad SA29489 [1] "CenterIM URL Parsing Command Execution Vulnerability"

CenterIM does completely nothing with received URLs. Maybe the
unfortuate "exploit writer" was using XFCE Terminal [2], or a terminal
emulator with a similar problem.

[1] http://secunia.com/advisories/29489/
[2] http://bugzilla.xfce.org/show_bug.cgi?id=3383

-- 
Lubomir Kundrak (Red Hat Security Response Team)

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.