oss-sec mailing list archives

Re: Exploitability of the integer overflows in djbdns 1.05?


From: Solar Designer <solar () openwall com>
Date: Mon, 1 Jun 2020 14:00:32 +0200

On Mon, Jun 01, 2020 at 09:24:21AM +0300, Georgi Guninski wrote:
Exploitability of the integer overflows in djbdns 1.05?

TLDR: Are the integer overflows in djbdns 1.05 exploitable?

https://en.wikipedia.org/wiki/Betteridge%27s_law_of_headlines

"Betteridge's law of headlines is an adage that states: "Any headline
that ends in a question mark can be answered by the word no"."

I'm sure you didn't mean it that way, but the truth in my joke is that
we should actually research the question and provide an informed answer.
Will you, please?  Thanks!

Alexander


Current thread: