Date: Fri, 12 Jul 2013 20:07:48 +0400 From: Solar Designer <solar@...nwall.com> To: mancha <mancha1@...h.com> Cc: oss-security@...ts.openwall.com Subject: Re: CVE request: Cyrus-sasl NULL ptr. dereference On Fri, Jul 12, 2013 at 03:47:57PM +0000, mancha wrote: > Under a default scenario, authentication would continue to be > available until the 5th NULL ptr. dereference. OK, this is a security issue and is CVE-worthy, then. Thanks! Alexander
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.