Re: Public disclosure of discovered vulnerabilities
Available news archives: comp.lang.tcl - comp.lang.python - comp.security.firewalls - sci.crypt - comp.lang.php - comp.lang.javascript
Google
 
Web news.hping.org


sci.crypt archive

Re: Public disclosure of discovered vulnerabilities

From: Andrew Swallow <am.swallow@btopenworld.com>
Date: Fri Jun 10 2005 - 01:02:22 CEST

Jan Vorbrüggen wrote:

>> I was careful to use integer data rather than character data so you
>> cannot just replace it with a call to the string routines.
>
>
> In that case, you need a proper array datatype (cue Fortran90 et seq.).
> The issues are very similar.
>
> Jan

Automatic things may produce a genetic cure. You need a queue rather
than an array.

As for a strongly typed array, that normally turns buffer overflow from
a malicious code runner to a denial of service attack.

Andrew Swallow
Received on Thu Sep 29 21:42:30 2005