Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




bugtraq logo Bugtraq mailing list archives

Re: iDefense Security Advisory 10.02.07: Sun Microsystems Solaris FIFO FS Information Disclosure Vulnerability
From: iDefense Labs <labs-no-reply () idefense com>
Date: Thu, 04 Oct 2007 14:16:02 -0400

Zaraza,

Thank you for pointing out the misleading text.  The vulnerability is a
signedness error which leads to information disclosure.  We have updated
the advisory to read as follows.

===
negative value can cause large amounts of kernel memory contents to be
disclosed.
===

VeriSign iDefense Labs

From: 3APA3A <3APA3A_at_SECURITY.NNOV.RU>
Date: Thu, 4 Oct 2007 20:38:51 +0400

Dear iDefense Labs,

Can you please clarify this issue? According to subject it looks like
information leak (information disclosure) issue, while according to
description, it looks more like memory leak (Denial of Service) issue.


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]